Project Grant 2154404

Award Date 10/1/22
Completion Date 9/30/25
Dollars Obligated $500K
Federal Grant Program
47.070
Assistance Type
Project Grant
Place of Performance
Baltimore, MD 21218, USA
Similar Awards
This two-year, $174,900 project grant from the National Science Foundation's Division of Computer and Network Systems will fund research at DePaul University towards developing more accurate vulnerability detection and less disruptive vulnerability mitigation techniques. The goal is to address challenges in reliably finding software vulnerabilities and patching them without compromising system availability. Researchers will design a scheme for encoding intrinsic vulnerability characteristics...
The University of Utah received a $220,500 Project Grant award from the National Science Foundation (NSF) under the Computer and Information Science and Engineering (CISE) program (CFDA 47.070). This 5-year award, beginning March 1, 2024, supports research to develop scalable security testing techniques for large software systems. The project focuses on advancing "fuzzing" - a predominant software vulnerability detection method - to address the unique challenges posed by software...
The National Science Foundation awarded $349,079 under its Computer and Information Science and Engineering program (CFDA 47.070) to Stony Brook University for a collaborative research project titled "COLLABORATIVE RESEARCH: SATC: CORE: MEDIUM: APP-DRIVEN WEB BROWSING: NOVEL RISKS, VULNERABILITIES, AND DEFENSES." The project, taking place from October 1, 2022 to September 30, 2026, will analyze security risks inherent in non-browser applications that enable web browsing. Researchers...
This Project Grant award from the National Science Foundation Division of Computer and Network Systems, under the Computer and Information Science and Engineering program (CFDA 47.070), provides $612,648 to Worcester Polytechnic Institute to develop new methods for securing embedded software. The awardee will shift security enforcement from developers to compilers using static analysis, runtime instrumentation, and hardware support. Enhancements will enable customization and promote longevity....
The National Science Foundation awarded The Johns Hopkins University a $900,000 Project Grant under the Computer and Information Science and Engineering federal grant program (CFDA 47.070) to conduct collaborative research focused on understanding robustness in machine learning via parsimonious structures from October 1, 2022 to September 30, 2025. Specifically, the University will research conditions under which one can detect adversarial attacks on networks or data poisoning and reconstruct...
The National Science Foundation awarded a $900,000 project grant to the University of California, San Diego to develop foundations, techniques, and frameworks for building end-to-end verified secure sandboxed systems from May 2022 through April 2026. This award falls under the Computer and Information Science and Engineering program (CFDA 47.070), which supports investigator-initiated research and education in computing, communications, and information science and engineering. Specifically,...
This $636,487 five-year federal Project Grant award from the National Science Foundation's Computer and Information Science and Engineering (CISE) program (CFDA 47.070) aims to develop a holistic framework for securing the continuous software development pipeline. The University of Delaware, the prime recipient, will comprehensively inspect the entire continuous software development process to identify and mitigate emerging software supply chain security threats. The project will involve three...
This $566,953 project grant awarded by the National Science Foundation (NSF) under the Computer and Information Science and Engineering (CISE) program (CFDA 47.070) aims to address critical challenges in fine-grained information flow control (IFC) within software systems. The research primarily focuses on developing a novel IFC system tailored to the Rust programming language, leveraging its unique features. Key objectives include designing a static IFC library to minimize programming model...
This Project Grant award from the National Science Foundation's (NSF) Computer and Information Science and Engineering (CISE) Federal Grant Program (CFDA 47.070) will fund a $1,200,000 project to develop practical, systematic fuzzing tools that enhance the security of scientific software. The 3-year project, led by the University of Utah, aims to address vulnerabilities in complex, multi-language scientific software by introducing (1) performant cross-language instrumentation, (2) automated...
This $353,258 Project Grant, awarded by the National Science Foundation (NSF) under the Computer and Information Science and Engineering (CFDA 47.070) program, supports research into new methods for evaluating and mitigating security vulnerabilities in computer hardware design. The 5-year project, which commenced on March 1, 2025, aims to develop abstract models and programming interfaces to represent microarchitectural vulnerabilities, enabling industry stakeholders to better incorporate...

The National Science Foundation Division of Computer and Network Systems awarded a $500,000 Project Grant to The Johns Hopkins University to study and measure the consequences of prototype pollution vulnerabilities automatically via joint taintflow analysis. This award falls under the Computer and Information Science and Engineering program (CFDA 47.070), which supports research and education in all areas of computing, communications, and information science and engineering.

Specifically, the awardee will design an automated framework using novel joint taint-flow analysis to systematically study and measure further consequences of real-world prototype pollution vulnerabilities. The framework will connect different taint-flows based on object lookup and assignment statements to answer key questions about where and how to inject properties to enable outcomes like cross-site scripting. This research aims to advance understanding of prototype pollution vulnerabilities and consequences by quantifying their prevalence and severity. The three-year project period will conclude on September 30, 2025.

Generated 1/7/24, 11:12 AM