SAFER - Secure Foundations: Verified Systems Software Above Full-Scale Integrated Semantics

SAFER - 安全基础:高于全面集成语义的经过验证的系统软件

基本信息

  • 批准号:
    EP/Y035976/1
  • 负责人:
  • 金额:
    $ 269.73万
  • 依托单位:
  • 依托单位国家:
    英国
  • 项目类别:
    Research Grant
  • 财政年份:
    2024
  • 资助国家:
    英国
  • 起止时间:
    2024 至 无数据
  • 项目状态:
    未结题

项目摘要

Our computing infrastructure is fundamental to modern society, but it is fundamentally flawed: exploitable errors expose all of us to continual risk of malicious attack, at every level from the individual to the nation-state. Industry test-and-debug development cannot check all execution paths of these incredibly complex systems, and hence cannot ensure the absence of bugs. This is especially important for systems software: the operating systems and hypervisors that use the underlying hardware-architecture mechanisms (virtual memory, etc.) to protect running programs from each other, as flaws in these let attacks spread. This long-standing problem has prompted research in formal verification and analysis, as machine-checked proof _can_ provide high assurance of correctness and security, but research has lagged behind mainstream engineering, unable to handle the subtleties and scale of real architectures and systems code. Recent work has taken big steps towards this in several directions: we now have full-scale instruction-set semantics, models for many aspects of user and systems concurrency, and sophisticated reasoning methods - but we still do not have an integrated mathematical definition of the allowed behaviour of systems code for any mainstream architecture, or proof and analysis tools above it. The high-level challenge that we now face, and that SAFER targets, is to integrate and extend those disparate advances to produce usable full-scale mathematical models of real-world architectures; to develop analysis and verification techniques above them that can be used in practice for real-world systems software; and to enable transfer of these techniques into more widespread use in industry, complementing existing practice with mathematical specifications, methods, and assurance. Ultimately, this is the only way to establish a substantially more robust and secure computing infrastructure, to truly make us safer from malicious attack on our data and systems
我们的计算基础设施是现代社会的基础,但它存在根本性的缺陷:可利用的错误使我们所有人都面临持续的恶意攻击风险,从个人到民族国家的各个层面。行业测试和调试开发无法检查这些难以置信的复杂系统的所有执行路径,因此无法确保没有错误。这对于系统软件尤其重要:使用底层硬件架构机制(虚拟内存等)的操作系统和管理程序。以保护运行中的程序免受彼此的攻击,因为这些程序中的缺陷会让攻击传播开来。这个长期存在的问题促使了形式验证和分析的研究,因为机器检查的证明可以提供正确性和安全性的高度保证,但研究已经落后于主流工程,无法处理真实的架构和系统代码的微妙性和规模。最近的工作在几个方向上朝着这一方向迈出了重大步伐:我们现在有了完整的解释集语义,用户和系统并发性的许多方面的模型,以及复杂的推理方法-但是我们仍然没有任何主流体系结构的系统代码的允许行为的集成数学定义,或者证明和分析工具。我们现在面临的高级挑战,SAFER的目标是整合和扩展这些不同的进步,以产生真实世界体系结构的可用的全尺寸数学模型;开发可用于真实世界系统软件的分析和验证技术;并使这些技术能够在工业中得到更广泛的应用,用数学规范,方法,和保证。最终,这是建立一个更加强大和安全的计算基础设施的唯一途径,真正使我们的数据和系统免受恶意攻击

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Peter Sewell其他文献

Islaris: verification of machine code against authoritative ISA semantics
Islaris:根据权威 ISA 语义验证机器代码
report on EPSRC Grant GR / L 62290 / 01 ( 01 / 07 / 98 – 30 / 06 / 01 ) Calculi for Interactive Systems : Theory and Experiment
EPSRC Grant GR / L 62290 / 01 ( 01 / 07 / 98 – 30 / 06 / 01 ) 交互式系统计算的报告:理论与实验
  • DOI:
  • 发表时间:
    2001
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Philippa Gardner;R. Milner;Peter Sewell
  • 通讯作者:
    Peter Sewell
Capability Hardware Enhanced RISC Instructions: CHERI Instruction-Set Architecture (Version 7)
功能硬件增强型 RISC 指令:CHERI 指令集架构(版本 7)
  • DOI:
  • 发表时间:
    2019
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Robert N. M. Watson;Peter G. Neumann;Jonathan Woodruff;Michael Roe;H. Almatary;Jonathan Anderson;John Baldwin;D. Chisnall;Brooks Davis;N. Filardo;Alexandre Joannou;Ben Laurie;A. T. Markettos;Simon W. Moore;S. Murdoch;Kyndylan Nienhuis;Robert M. Norton;Alexander Richardson;Peter Rugg;Peter Sewell;Stacey D. Son;Hongyan Xia
  • 通讯作者:
    Hongyan Xia
From rewrite rules to bisimulation congruences
从重写规则到互模拟同余
A R Tif Ac T the Missing Link: Explaining Elf Static Linking, Semantically
AR Tif Act the Missing Link:从语义上解释 Elf 静态链接
  • DOI:
  • 发表时间:
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Stephen Kell;Dominic P. Mulligan;Peter Sewell
  • 通讯作者:
    Peter Sewell

Peter Sewell的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Peter Sewell', 18)}}的其他基金

REMS: Rigorous Engineering for Mainstream Systems
REMS:主流系统的严格工程
  • 批准号:
    EP/K008528/1
  • 财政年份:
    2013
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Research Grant
Semantic Foundations for Real-World Systems
现实世界系统的语义基础
  • 批准号:
    EP/H005633/1
  • 财政年份:
    2010
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Fellowship
Reasoning with Relaxed Memory Models
使用宽松记忆模型进行推理
  • 批准号:
    EP/F036345/1
  • 财政年份:
    2008
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Research Grant

相似海外基金

Collaborative Research: SaTC: CORE: Medium: RUI: Applied Cryptographic Protocols with Provably-Secure Foundations
协作研究:SaTC:核心:中:RUI:具有可证明安全基础的应用密码协议
  • 批准号:
    2149766
  • 财政年份:
    2022
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Standard Grant
Collaborative Research: SaTC: CORE: Medium: Applied Cryptographic Protocols with Provably-Secure Foundations
合作研究:SaTC:核心:中:具有可证明安全基础的应用密码协议
  • 批准号:
    2149765
  • 财政年份:
    2022
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Standard Grant
CAREER: Foundations of Secure Communication in mmWave Networks
职业:毫米波网络安全通信的基础
  • 批准号:
    2045237
  • 财政年份:
    2021
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Continuing Grant
NSF-BSF: SaTC: CORE: Small: Secure Massively Parallel Computations: Foundations and Constructions
NSF-BSF:SaTC:核心:小型:安全大规模并行计算:基础和结构
  • 批准号:
    2044679
  • 财政年份:
    2021
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Standard Grant
Collaborative Research: EAGER: Foundations of Secure Multi-Robot Computation
协作研究:EAGER:安全多机器人计算的基础
  • 批准号:
    2034097
  • 财政年份:
    2020
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Standard Grant
Collaborative Research: EAGER: Foundations of Secure Multi-Robot Computation
协作研究:EAGER:安全多机器人计算的基础
  • 批准号:
    2034123
  • 财政年份:
    2020
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Standard Grant
NSF/ENG/ECCS-BSF: Collaborative Research: Foundations of secure multi-agent networked systems
NSF/ENG/ECCS-BSF:协作研究:安全多代理网络系统的基础
  • 批准号:
    1809076
  • 财政年份:
    2018
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Standard Grant
NSF/ENG/ECCS-BSF: Collaborative Research: Foundations of secure multi-agent networked systems
NSF/ENG/ECCS-BSF:协作研究:安全多代理网络系统的基础
  • 批准号:
    1809315
  • 财政年份:
    2018
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Standard Grant
Foundations and Real-World Aspects of Secure Cryptographic Connections
安全加密连接的基础和现实世界
  • 批准号:
    406593006
  • 财政年份:
    2018
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Research Fellowships
CPS: Synergy: Collaborative Research: Foundations of Secure Cyber-Physical Systems of Systems
CPS:协同:协作研究:安全网络物理系统的基础
  • 批准号:
    1901728
  • 财政年份:
    2018
  • 资助金额:
    $ 269.73万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了