Title :
FUZZBUSTER: Towards Adaptive Immunity from Cyber Threats
Author :
Musliner, David J. ; Rye, Jeffrey M. ; Thomsen, Dan ; McDonald, David D. ; Burstein, Mark H. ; Robertson, Paul
Abstract :
Today´s computer systems are under relentless attack from cyber attackers armed with sophisticated vulnerability search and exploit development toolkits. To protect against such threats, we are developing FUZZBUSTER, an automated system that provides adaptive immunity against a wide variety of cyber threats. FUZZBUSTER reacts to observed attacks and proactively searches for never-before-seen vulnerabilities. FUZZBUSTER uses a suite of fuzz testing and vulnerability assessment tools to find or verify the existence of vulnerabilities. Then FUZZBUSTER conducts additional tests to characterize the extent of the vulnerability, identifying ways it can be triggered. After characterizing a vulnerability, FUZZBUSTER synthesizes and applies an adaptation to prevent future exploits.
Keywords :
computer network reliability; computer network security; FUZZBUSTER; adaptive immunity; automated system; computer system; cyber threats; development toolkit; fuzz testing; never before seen vulnerabilities; sophisticated vulnerability search toolkit; vulnerability assessment tool; Adaptation models; Computer crashes; Generators; Immune system; Security; Software; Testing; adaptive immunity; cyber-security; fuzz-testing;
Conference_Titel :
Self-Adaptive and Self-Organizing Systems Workshops (SASOW), 2011 Fifth IEEE Conference on
Conference_Location :
Ann Arbor, MI
Print_ISBN :
978-1-4577-2029-1
DOI :
10.1109/SASOW.2011.26