U.S. Army announces new era for cybersecurity software

U.S. Army Combat Capabilities Development Command, known as DEVCOM, announced a new era of cybersecurity software with game-changing technology.

According to DEVCOM, Army researchers are creating technologies for decision makers to identify and execute the best-course-of-action cybersecurity defense in near-real-time and time-constrained situations.

The team, including Dr. Jaime C. Acosta, DEVCOM Army Research Laboratory South site lead at the University of Texas at El Paso, DEVCOM ARL researcher Dr. Frederica Nelson, UTEP students Stephanie Medina and Luisana Clark, and UTEP professors Shahriar Hossain and Monika Akbar, developed a novel software tool called the repeatable experimentation system, or RES.

- ADVERTISEMENT - CONTINUE READING BELOW -

The system integrates virtualization, emulation, simulation and container technologies to allow analysts to characterize the benefits of particular algorithms in particular situations by running several parallel experiments at once, and then to package those scenarios and results for other researchers to repeat and build upon.

“Moving target defense, or MTD, is a very promising approach to defense,” Acosta said. “This technique constantly shuffles, or changes, system properties in order to nullify any intelligence information that an adversary may have, and that may be used to compromise systems. There are many existing theories, algorithms and models for this novel type of defense, but until now, it has been nearly impossible to conduct comparative analyses to generate situation-specific decision support.”

The scientific method emphasizes that repeatable experimentation is critical for several reasons: to facilitate comparative analysis, to recreate experiments, to re-validate reported results, to critique and propose improvements, and to augment the work, Acosta said.

“In the field of cybersecurity moving target defense, where assets are shuffled to thwart attackers, it is critical to know what strategies work best, the success factors, and how these strategies may impact system performance,” Acosta said.

While some researchers make their algorithms, models and tools available as open source, it is difficult and, in some cases, impossible to recreate studies due to the lack of the original operating environment or no support for software components used within that environment, he said.

The researchers have developed a standardized mechanism for researchers to create and share experimentation workflows and results using a tool built using the open-source model.

“In our work, we created a baseline MTD algorithm and scenario,” Acosta said. “We demonstrate that RES can be used to efficiently characterize MTD performance, when pinned against network scans, and that using the inherent and efficient parallelization execution features of RES does not impact the results of the experiments.”

Acosta said he is very confident that this research and tool will shape a cornerstone for the Army of the future’s defense technologies.

“This research is critical because it helps decision makers understand which technologies are best suited under different circumstances, which is essential in the multi-domain operations area, along with several others,” Acosta said. “Our work enables researchers to develop and share experiments and their results with select partners in an efficient way, using the same grounding. I see this as a necessity for standing on the shoulders of giants and moving forward to ensure the Army’s success.”

Moving forward, the researchers plan to make incremental improvements to RES based on community feedback. More importantly, they plan to use this tool to conduct comparative analysis on different defense techniques.

The data generated from the executions of different defense mechanisms will become inputs to an autonomous decision support system that will provide insights into which mechanisms may work better under different conditions.

The team will present their research virtually at the upcoming International Conference on Security and Privacy in Communication Systems in September.

Readers who wish to follow our weekly coverage can subscribe to the Weekly Defense Roundup.

If you wish to report a grammatical or factual error in this article, please let us know by using the online form.

Executive Editor

Support The Defence Blog

Independent reporting takes resources. Join us on Patreon.

Become a patron

More Like This

U.S. Navy orders six stealth recon boats designed by Australian veterans

The U.S. Navy bought six specialized reconnaissance boats designed by former Australian Navy frogmen, built in North Carolina, and validated through two years of...

Northrop wins $61M to upgrade Growler’s jamming receivers

Before any American strike package enters defended enemy airspace, an EA-18G Growler goes in first to blind the radars, jam the communications, and break...

U.S. Navy pays $100M for missiles that simulate China and Russia’s threat

Every warship in the U.S. Navy practices shooting down the kind of supersonic cruise missiles that China and Russia have spent decades perfecting, and...

Lockheed opens Alabama factory to build America’s next missile shield

Lockheed Martin opened a purpose-built missile production facility in Courtland, Alabama on Monday dedicated entirely to manufacturing the Next Generation Interceptor, the missile that...

Northrop Grumman’s Jackal missile passes key flight test

Northrop Grumman completed a successful flight test of its Jackal precision strike missile on June 1, demonstrating the core systems that will define how...

China claims its J-10 swept one of Europe’s best jets 9-0

Pakistan's Chinese-made J-10CE fighter jets went undefeated against Qatar's Eurofighter Typhoons in nine simulated air combat engagements during a joint exercise in 2024, with...