SoS Quarterly Summary Report - October 2016

Lablet Summary Report
Purpose: To highlight progress. Information is generally at a higher level which is accessible to the interested public.

A). Fundamental Research
[Xie, Blythe, Koppel, Smith] We have begun collaboration with researchers at University of Pennsylvania who specialize in simulating and checking Markov chain models. The goal is to blend these Markov-based models with our DASH model to tackle security problems.

[Godfrey, Caesar, Nicol, Sanders, Jin] We continue to investigate effective evaluation methodologies designed scale to large and complex systems via the marriage of emulation and simulation. We developed a hybrid platform, named DSSnet, with the goal of realizing the network models and the evaluating the verification algorithms we developed earlier. We are currently in the process of open-sourcing the DSSNet software. We also refined the existing virtual time mechanism for better synchronization between the two systems to achieve better fidelity. The research outcome includes an accepted journal paper in Journal of Simulation.

[Iyer, Kalbarczyk] Analysis of new credential stealing and infrastructure abuse attacks targeting Blue Waters, a petascale supercomputer hosted at NCSA. Data on these attacks were used to update our factor graph model. Specifically, we collected new set of security-related events that we used to create new factor functions in the factor graph model employed by the AttackTagger so to cover these recent attacks.

[Mitra, Dullerud, Chaudhuri] .We have formulated the general problem of controller synthesis in the presence of resource constrained adversaries; namely, given an adversary of a certain classification, parametrized according to the resources available to the adversary, we are creating a methodology to assess the performance degradation from this threat class. We have developed a sound and complete algorithm for solving this problem, initially for the special case of linear systems with L2-norm bounded adversaries, and now for more general nonlinear models.

[Viswanath] We have initiated a study of anonymity of the BitCoin networking stack. The networking architecture of BitCoin P2P (peer to peer), since distributed architectures are the basic essence of the anonymity provided by the cryptocurrency. However, very recent works point out the loopholes in the networking protocols -- and our work has focused on a systematic exploration of this phenomenon.

B). Community Interaction
C. Educational
[Godfrey, Caesar, Nicol, Sanders Jin] Our Coursera online course on Cloud Networking is about to re-launch in a new continuous operation mode on October 24, 2016. When this was taught last fall, roughly 30,000 students enrolled. This course included a segment on network security for the cloud, particularly with respect to network virtualization.

[Viswanath] A set of notes summarizing the Bit Coin networking protocols is being developed, with the goal of using them in an upcoming privacy and anonymity course at the graduate level.

[UIUC SoS Lablet] Five students have completed research projects as part of the SoS Summer Internship Program that ended on July 29. Each student presented a poster on the last day of the internship. The students came from Tennessee State University, North Texas University, and the University of Illinois at Urbana-Champaign. They also attended seminars on other educational topics in conjunction with other internship programs within the UIUC College of Engineering.