Browse

Research into Abnormal Malicious Remote Control Detection

Principal Investigator(s): Kihong Park

CSR-EHS: Resource-Efficient Monitoring, Diagnosis, and Programming Support for Reliable Networked Embedded Systems

Principal Investigator(s): Zhiyuan Li; Saurabh Bagchi

This project focuses on an important kind of networked embedded systems called sensor networks. Such networks have become popular platforms for continuous sensing and analysis of physical environments, leading to a better understanding of natural phenomena, civil infrastructures, animal habitats, and other important scientific and engineering issues. The sensor data can also be used to improve environmental protection, infrastructure safety and energy efficiency, to name a few of the potential applications.

The ad-hoc and dynamic nature of networked embedded systems make their communication protocols complex. This research uses the methodology of continuous error monitoring for continued improvement of reliability after the deployment of sensor networks. The project builds a framework consisting of compiler-based tools and software techniques for the detection, diagnosis and correction of programming errors on sensor networks. The nature of the sensor-network applications requires the hardware components and software protocols to be small and resource-constrained. The project therefore makes resource efficiency one of the critical design criteria.

The success of this project should contribute substantially to the reliability of sensor networks whose potential applications are very broad. The project also engages a broad community of students in various disciplines, through Honor Seminars, special mentoring programs and undergraduate research opportunities such as Purdue’s EPICS program (Engineering Projects in Community Services).

Robust Sensor Network Architecture through Neighborhood Monitoring and Isolation

Principal Investigator(s): Saurabh Bagchi; Ness Shroff

The project provides resilience to wireless networks of mobile ad hoc and sensor (MAHAS) nodes, which are vulnerable to a wide range of security attacks. These attacks could involve eavesdropping, message tampering, or identity spoofing, that have been addressed by customized cryptographic primitives for encryption and authentication. Alternately, the attacks may be targeted to the control or the data traffic in wireless networks. Since the networks are resource constrained (bandwidth, energy, or processing), providing detection and countermeasures to such attacks often turn out to be more challenging than in wired networks. The project is developing protocols for detecting, diagnosing, and mitigating one class of attacks, namely, those that affect the control traffic. Typical examples of control traffic are routing, monitoring the liveness of nodes, and system management. It is critical to guarantee the fidelity of control traffic since disrupting it can hamper the data traffic. For example, if a malicious node manages to interpose itself in an established route between two legitimate nodes, it can disrupt the data traffic by selectively dropping the data packets. Such attacks are often difficult to detect and can be launched without the need for cryptographic keys. The research presents a technique called local monitoring whereby nodes oversee part of the traffic going in and out of its neighbor nodes. The project makes neighbor monitoring feasible in resource constrained environments and mitigates the effect of the malicious node through isolation, either locally or globally using a distributed protocol. The work will enable the deployment of MAHAS networks for critical secure applications. We expect application of the results to two testbeds for environment monitoring (water quality and pharmaceutical manufacturing) that we are currently building.

Robust Sensor Network Architecture through Neighborhood Monitoring and Isolation

Principal Investigator(s): Saurabh Bagchi

The project provides resilience to wireless networks of mobile ad hoc and sensor (MAHAS) nodes, which are vulnerable to a wide range of security attacks. These attacks could involve eavesdropping, message tampering, or identity spoofing, that have been addressed by customized cryptographic primitives for encryption and authentication. Alternately, the attacks may be targeted to the control or the data traffic in wireless networks. Since the networks are resource constrained (bandwidth, energy, or processing), providing detection and countermeasures to such attacks often turn out to be more challenging than in wired networks. The project is developing protocols for detecting, diagnosing, and mitigating one class of attacks, namely, those that affect the control traffic. Typical examples of control traffic are routing, monitoring the liveness of nodes, and system management. It is critical to guarantee the fidelity of control traffic since disrupting it can hamper the data traffic. For example, if a malicious node manages to interpose itself in an established route between two legitimate nodes, it can disrupt the data traffic by selectively dropping the data packets. Such attacks are often difficult to detect and can be launched without the need for cryptographic keys. The research presents a technique called local monitoring whereby nodes oversee part of the traffic going in and out of its neighbor nodes. The project makes neighbor monitoring feasible in resource constrained environments and mitigates the effect of the malicious node through isolation, either locally or globally using a distributed protocol. The work will enable the deployment of MAHAS networks for critical secure applications. We expect application of the results to two testbeds for environment monitoring (water quality and pharmaceutical manufacturing) that we are currently building.

Rural Law Enforcement Technology Center

Principal Investigator(s): Marc Rogers

Scalable, Reliable Management of Sensor Information

Principal Investigator(s): Sunil Prabhakar;Susanne Hambrusch

Scalable, Robust and Secure Group-Oriented Services for Wireless Mesh Networks

Principal Investigator(s): Cristina Nita-Rotaru

Wireless mesh networks are emerging as a promising robust low-cost network architecture able to provide increased coverage and larger bandwidth, resulting in higher quality of service and information availability. Many distributed applications provided on wireless mesh networks enable collaborations and sharing of information. Such applications benefit from scalable, robust and secure group services such as one-to-many or many-to-many multicast and distributed data access. Group services, in turn, require support from infrastructure protocols such as routing, or security mechanisms such as authentication, access control and key management.

The goal of this project is to advance state-of-the-art group-oriented services in the context of wireless mesh networks. The project presents new formulations of distributed problems capturing the particularities of wireless mesh networks and the interactions between security, availability and scalability. It also studies the viability and limitations of cross-layer design as a new paradigm of building secure network services. Innovative results consist of scalable one-to-many and many-to-many wireless multicast protocols that provide support for efficient group communication, scalable data sharing algorithms that are robust to malicious behavior, high-throughput, robust and secure routing that assist applications to achieve high-performance, scalable key management protocols and authentication mechanisms enabling decentralized infrastructure access services. This project contributes to the education of the next generation of secure systems designers, generating interactions between the distributed systems, security and wireless networks research areas.

Secure Supply-Chain Protocols

Principal Investigator(s): Mikhail Atallah; Leroy Schwarz; Vinayak Deshpande

One of the major sources of inefficiency in supply-chain management is information asymmetry; i.e., information that is available to one or more organizations in the chain (e.g., manufacturer, retailer) is not available to others. Information asymmetry is known to create inefficiencies in managing supply chains, among them under-investment in capacity, leading to shortages, misallocation of inventory and transportation, increased prices, and reduced customer service. It can also lead to increased use of premium shipping, increased penalties resulting from line shutdowns, and lost future business contracts. There are several causes of information asymmetry, among them fear that a powerful buyer or supplier will take advantage of private information, that information will leak to a competitor, etc.

The Secure Supply-Chain Collaboration (SSCC) protocols we propose will enable supply-chain partners to cooperatively achieve desired system-wide goals without revealing any private information, even though the jointly-computed decisions depend on the private information of all the parties..

This project will create new research tools in supply-chain management and foster the development of new techniques in computer science. SSCC also has the potential to profoundly impact supply-chain management practice; and, thereby, improve productivity and stimulate economic growth.

Security Issues for Indiana GIS Data

Principal Investigator(s): Eugene Spafford

The State of Indiana is the repository for (and collector of) a significant amount of spatial data. There is a growing need for well-articulated government policy about the public release of such data as a method for communicating government data and information. Much of the related discussion to-date has focused on the data at the individual layer level and whether the data should be sold or not. Additional discussion should be focused on the protection of personal identifiers contained in such data and the potential for exposing both Indiana citizens and corporations to privacy violations. Purdue proposes a study of the services provided by the use of spatial data and, in particular, of the security implications when multiple data layers are joined as a method for advanced communication of geospatial data. This study will lead to policy recommendations for the State of Indiana that will promote the appropriate balance between public information benefits and personal privacy risks. It will also advance the state of the art and practice of information security in general.