This $599,978 federal Project Grant award, funded by the National Science Foundation's (NSF) Computer and Information Science and Engineering (CISE) program (CFDA 47.070), aims to develop effective security measures to defend against memory corruption attacks. The key objectives are to:
Reliably retrofit execute-only memory (XOM) protection into stripped binary executables on the x86-64 platform, enabling legitimate data reads in executable memory without relying on error-prone binary...
This Project Grant from the National Science Foundation's Computer and Information Science and Engineering program, totaling $465,628, will support the development of a novel and customizable Android container-based virtualization architecture for dynamic malware analysis from December 2022 through September 2024. Led by researchers at Tulane University, this project introduces a transparent malware analysis environment capable of handling evasive Android malware through innovative...
The National Science Foundation (NSF) awarded a $330,000 Project Grant through its STEM Education (47.076) program to the University of Massachusetts Lowell. The grant supports the development of advanced teaching modules on software security, focusing on memory corruption attack and defense techniques for the Microsoft Windows operating system. Key objectives include:
Innovating the Armitage open-source software vulnerability identification tool.
Developing teaching content on Windows...
This Project Grant award from the National Science Foundation's (NSF) Computer and Information Science and Engineering (CISE) program, with a total funding of $122,767, supports a research project by the University of California, Berkeley aimed at hardening off-the-shelf software against side channel attacks.
The project consists of three main tasks: (1) reverse engineering hardware structures to determine potential attack vectors, (2) designing software transformations to protect against...
This $262,754 Project Grant award from the National Science Foundation's (NSF) Computer and Information Science and Engineering (CISE) program (CFDA 47.070) aims to enhance practical defense mechanisms against memory errors and attacks. The award, with a period of performance from July 1, 2024 to June 30, 2029, will be performed by The Pennsylvania State University (Penn State). The project will investigate systematic approaches to evaluate practical defense mechanisms, identify configuration...
The National Science Foundation Division of Computing and Communication Foundations awarded a $499,058 Project Grant to Stony Brook University to support research titled "SATC: CORE: SMALL: SELECTIVE DATA PROTECTION AGAINST DATA-ORIENTED AND TRANSIENT EXECUTION ATTACKS." The grant period runs from July 1, 2021 to June 30, 2024.
The funding supports research and development of techniques to protect data and systems against data-oriented and transient execution attacks through...
This Project Grant award of $300,000 was provided by the National Science Foundation's (NSF) Computer and Information Science and Engineering (CISE) program (CFDA 47.070) to Colorado State University to explore security risks from data remanence in Static Random Access Memory (SRAM) and develop innovative sanitization techniques.
The research project focuses on investigating the potential for unauthorized data recovery from discarded SRAM chips, as well as developing effective data...
This two-year, $174,900 project grant from the National Science Foundation's Division of Computer and Network Systems will fund research at DePaul University towards developing more accurate vulnerability detection and less disruptive vulnerability mitigation techniques. The goal is to address challenges in reliably finding software vulnerabilities and patching them without compromising system availability. Researchers will design a scheme for encoding intrinsic vulnerability characteristics...
The National Science Foundation awarded a $900,000 project grant to the University of California, San Diego to develop foundations, techniques, and frameworks for building end-to-end verified secure sandboxed systems from May 2022 through April 2026. This award falls under the Computer and Information Science and Engineering program (CFDA 47.070), which supports investigator-initiated research and education in computing, communications, and information science and engineering.
Specifically,...
This Project Grant from the National Science Foundation's Computer and Information Science and Engineering program will fund $250,000 to develop automated analyses that improve the security of open-source operating system kernels. The Regents of the University of California at Riverside will receive the award to conduct research from July 1, 2022 to June 30, 2025.
A large number of downstream operating system kernels are derived from upstream kernels like Linux to reduce development costs....