SHF: Small: Rethinking Computer Architecture for Secure and Resilient Systems
SHF: Small: Rethinking Computer Architecture for Secure and Resilient Systems
批准号:
0917134
负责人:
Ruby Lee
金额:
$40.0万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2009
资助国家:
美国
项目状态:
已结题
起止时间:
2009-09-01 至 2013-08-31
中文摘要
我们的社会、经济和国家安全严重依赖于计算机和计算设备。只需几跳,商用计算机和移动电话就可以连接到秘密或敏感信息或关键基础设施。然而,在过去的30年或更长的时间里,主流的商用计算机在设计时都没有考虑到安全性。相反,它们的设计目的是提高性能、能源效率、成本或规模,并在事后增加安全性。虽然已经建造了一些专门的安全计算机,但到目前为止,人们不得不为了安全而牺牲性能(或成本和便利性)。在这项研究中,PI计划探索如果我们允许自己进行一种全新的设计,其中安全是一流的目标,与性能和其他目标相同,那么什么是可行的。这项研究将从基本原则出发重新思考计算机体系结构,以显著提高未来计算机的安全性和性能。这项研究有两个主题:如何设计计算机体系结构以实现更安全的软件和系统,以及如何设计本身更值得信赖的计算机硬件组件。PI将为计算机体系结构开发一种新的基于威胁的设计方法,研究如何在计算的每个基本方面的设计中建立安全意识。将为安全处理、安全内存、安全缓存、安全虚拟内存转换、安全存储和安全控制流开发新的架构基础。研究将侧重于提供安全的基石:关键信息的机密性和完整性以及可用性,即使在系统的某些部分可能已被破坏的情况下,也能弹性证明和执行安全关键任务。除了软件安全解决方案和当前最先进的硬件TPM(可信平台模块)解决方案所考虑的软件和网络攻击外,这些解决方案还将考虑硬件攻击。这项研究的智力贡献将是新的体系结构基础,以及所有未来计算机研究和开发中“基于威胁的设计”的新维度。这项研究的更广泛影响是提供可以内置到商用计算设备及其服务器中的核心安全技术。这些系统可用于计算机、通信、控制、娱乐和嵌入式系统,以构建更安全的系统,从而实现信息和网络安全的飞跃,造福于我们的社会。
英文摘要
Our society, economy and national security are critically dependent on computers and computing devices. With a few hops, commodity computers and mobile phones can be connected to secret or sensitive information or to critical infrastructures. However, mainstream commodity computers have not been designed with security in mind, for the last three or more decades. Rather, they have been designed to improve performance, energy efficiency, cost or size, with security added on as an after-thought. While some specialized secure computers have been built, up to now, one had to sacrifice performance (or cost and convenience) for security. In this research, the PI plans to explore what is feasible if we allow ourselves a clean-slate design, where security is a first-class goal, on par with performance and other goals. The investigation will rethink computer architecture from first principles to significantly improve both the security and the performance of future computers.The research has two thrusts: how to design computer architecture to enable more secure software and systems, and how to design computer hardware components that are themselves more trustworthy. The PI will develop a new threat-based design methodology for computer architecture, examining how to build security awareness into the design of each basic aspect of computing. New architectural foundations for secure processing, secure memories, secure caches, secure virtual memory translation, secure storage, and secure control flow will be developed. The research will focus on providing the cornerstones of security: Confidential and Integrity of critical information, and Availability, in the sense of resilient attestation and execution of security-critical tasks even when parts of the system may have been corrupted. The solutions will also consider hardware attacks, in addition to the software and network attacks considered by software security solutions and the current state-of-the-art hardware TPM (Trusted Platform Module) solution. The intellectual contributions of this research will be new architectural foundations, and a new dimension of "threat-based design" in the research and development of all future computers. The broader impact of this research is to provide core security technology that can be built into commodity computing devices and their servers. These can be used in computer, communications, control, entertainment and embedded systems to build significantly more secure systems that will provide a leap forward in information and cyber security, benefiting our society.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SaTC: STARSS: Small: Collaborative: Design and Security Verification of Next-Generation Open-Source Processors
-
批准号:1814190
-
项目类别:Standard Grant
-
资助金额:$16.56万
-
财政年份:2018
-
负责人:Ruby Lee
-
依托单位:
STARSS: Small: Collaborative: Practical and Scalable Security Verification of Security-Aware Hardware Architectures
-
批准号:1526493
-
项目类别:Standard Grant
-
资助金额:$13.33万
-
财政年份:2015
-
负责人:Ruby Lee
-
依托单位:
CSR: Small: Cloud Security on Demand
-
批准号:1218817
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2012
-
负责人:Ruby Lee
-
依托单位:
Collaborative Research: SecureCore for Trustworthy Commodity Computing and Communications
-
批准号:0430487
-
项目类别:Continuing Grant
-
资助金额:$0.0万
-
财政年份:2005
-
负责人:Ruby Lee
-
依托单位:
ITR: Architectures and Design Methodologies for Secure Low-Power Embedded Systems
-
批准号:0326372
-
项目类别:Standard Grant
-
资助金额:$52.5万
-
财政年份:2003
-
负责人:Ruby Lee
-
依托单位:
Architectural Solutions for Preventing Distributed Denial of Service Attacks
-
批准号:0208946
-
项目类别:Standard Grant
-
资助金额:$19.63万
-
财政年份:2002
-
负责人:Ruby Lee
-
依托单位:
Instruction Set Architecture for Pervasive Security
-
批准号:0105677
-
项目类别:Continuing Grant
-
资助金额:$25.66万
-
财政年份:2001
-
负责人:Ruby Lee
-
依托单位:
国内基金
海外基金
登录
查看更多内容
昼夜节律性small RNA在血斑形成时间推断中的法医学应用研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:
-
依托单位:
tRNA-derived small RNA上调YBX1/CCL5通路参与硼替佐米诱导慢性疼痛的机制研究
-
批准号:
-
项目类别:省市级项目
-
资助金额:10.0万元
-
批准年份:2022
-
负责人:张祥忠
-
依托单位:
Small RNA调控I-F型CRISPR-Cas适应性免疫性的应答及分子机制
-
批准号:32000033
-
项目类别:青年科学基金项目
-
资助金额:24.0万元
-
批准年份:2020
-
负责人:林平
-
依托单位:
Small RNAs调控解淀粉芽胞杆菌FZB42生防功能的机制研究
-
批准号:31972324
-
项目类别:面上项目
-
资助金额:58.0万元
-
批准年份:2019
-
负责人:高学文
-
依托单位:
变异链球菌small RNAs连接LuxS密度感应与生物膜形成的机制研究
-
批准号:81900988
-
项目类别:青年科学基金项目
-
资助金额:21.0万元
-
批准年份:2019
-
负责人:毛梦莹
-
依托单位:
肠道细菌关键small RNAs在克罗恩病发生发展中的功能和作用机制
-
批准号:31870821
-
项目类别:面上项目
-
资助金额:56.0万元
-
批准年份:2018
-
负责人:陈江宁
-
依托单位:
基于small RNA 测序技术解析鸽分泌鸽乳的分子机制
-
批准号:31802058
-
项目类别:青年科学基金项目
-
资助金额:26.0万元
-
批准年份:2018
-
负责人:麻慧
-
依托单位:
Small RNA介导的DNA甲基化调控的水稻草矮病毒致病机制
-
批准号:31772128
-
项目类别:面上项目
-
资助金额:60.0万元
-
批准年份:2017
-
负责人:吴建国
-
依托单位:
基于small RNA-seq的针灸治疗桥本甲状腺炎的免疫调控机制研究
-
批准号:81704176
-
项目类别:青年科学基金项目
-
资助金额:20.0万元
-
批准年份:2017
-
负责人:赵继梦
-
依托单位:
水稻OsSGS3与OsHEN1调控small RNAs合成及其对抗病性的调节
-
批准号:91640114
-
项目类别:重大研究计划
-
资助金额:85.0万元
-
批准年份:2016
-
负责人:何祖华
-
依托单位: