Slashdot Mirror


UCB, USC To Build (And Hack) A Model Internet

darksoulz writes "Associated Press stories from TheKansasCityChannel.com and TheChamplainChannel.com have an interesting report today. It appears that the U.S. Government has given a $5.5 million grant to the University of California, Berkley and the University of Southern California so that they can build a model of the internet, so they can hack it. They are trying to find better defenses against hacking, without breaking the real Internet. The first phase is scheduled to be completed by February."

43 of 218 comments (clear)

  1. Good by delirium28 · · Score: 5, Interesting
    This is an intersting approach, but if they keep this a "closed system" (i.e. a hidden internet), then how much real "hacking" can they expect? Are they going to use honeypot data? Will they expose this system externally for real "hackers" to play with? Just my $0.02 worth.

    --
    Who is John Galt?
    1. Re:Good by Tin+Foil+Hat · · Score: 2, Insightful

      Will they expose this system externally for real "hackers" to play with?

      If they do, I'm sure slashdot will be more than happy to help with stress testing.

      --
      No matter how many of my rights are taken away, somehow I still don't feel safe. -Frigid Monkey
    2. Re:Good by Anonymous Coward · · Score: 5, Insightful

      I think the real point here is to make a testbed where they can unleash worms and then try different techniques to try and trace, contain, stop, and prevent them. Not to actually attract hackers. They will be the hackers, do the hacking, etc. Also to play with DDOS attacks and whatnot, without saturating any existing networks. I think the operative term is hacking a model 'internet' not a machine on the internet.

    3. Re:Good by Anonymous Coward · · Score: 2, Informative

      More info can be found here on the USC Information Sciences Institute website

    4. Re:Good by Rick+the+Red · · Score: 2, Insightful
      It can't be a proper model of the internet unless it contains its own Slashdot, complete with the Slashdot Effect.

      Of course, this is a simulation of the internet, so it will have a simulation of Slashdot, and thus we are all now simulations somewhere in a computer in California, simulating the Slashdotting of simulated small, interesting web sites. Wow, I now have an avitar!

      --
      If all this should have a reason, we would be the last to know.
    5. Re:Good by h8macs · · Score: 2, Interesting

      How much 'actual' good data will this contain? Sounds more like a money funnel to me.

      They are smart collegians mind you, however the wild spawns the actual entity they are trying to catch. Distributed honeypot net would be more effective in my opinion.

      They will not have the same results.

      --
      :-( --- argh. Despair, I owe again. :-b
    6. Re:Good by bhtooefr · · Score: 2, Funny

      And then, the simulated /. will announce that a simulation of the simulation has been announced, and it will have a simulated /., which will announce that a simulation of the simulation of the simulation has been announced, and it will...

  2. Watch for the lawsuits now by Anonymous Coward · · Score: 2, Funny

    Watch for someone to sue these guys under DMCA and government hacking laws because they create their own net and hack it.

    (Just like you'll have a few lawyers salivating over the lawsuits if someone creates their own copy protection method for CD's and cracks it during testing. DMCA!!! DMCA!!!)

  3. Are they doing the FULL internet here? by paroneayea · · Score: 5, Funny

    I mean, will sixty percent of it be model porn?

    --
    http://mediagoblin.org/
    1. Re:Are they doing the FULL internet here? by October_30th · · Score: 2, Funny

      They need spammers too.

      --
      The owls are not what they seem
    2. Re:Are they doing the FULL internet here? by phlyingpenguin · · Score: 2, Funny

      Good point actually. They can model what happens when the registrar hijacks the internet with a friendly service that comes up if you mistype a domain, and break all spam reporting.

  4. I'll do it for 1 million by the_skywise · · Score: 5, Funny

    Why do you need 5 million for that? How many computers can it possibly take? 50? 100? Let's say 100. That's $100,000 (and that's generous these days) Let's say $200,000 to lease building space and power for 2 years (also generous) and let's pay 3 professors part time, plus 10 students work study wages (Figure $50,000 per professor and $20,000 per student...$350,000)

    What do we got?
    $100,000 parts
    $200,000 space
    $350,000 labor
    --------
    $650,000

    What's the other ~5 million going for?

    Oh wait... they must need Windows licenses and full copies of Outlook to properly test the hacks...

    1. Re:I'll do it for 1 million by dr_dank · · Score: 5, Funny

      What's the other ~5 million going for?

      Mountain Dew doesn't come cheaply, my friend....

      --
      Where does the school board find them and why do they keep sending them to ME?
    2. Re:I'll do it for 1 million by Anonymous Coward · · Score: 3, Informative

      Sorry but you're pricing things according to how much they look like they'd cost to you. Not how much they'd cost to the people who are actually buying them.

      If you get paid $50,000 a year by your employer (before taxes), how much do you think you cost to your employer? $50,000? Ha. Try $100k. They play various kinds of employment taxes, insurance, maybe a bit to a personnel management company... a good rule of thumb is that you cost 2x your salary to an employer. (Plus, you're taxed again on your end: a 50k salary means your take-home pay is 35k or whatever.)

      Also, at a university, you have what's called "overhead". If a research group gets a $1million grant, how much of that grant money do you actually see? Well, at my university, the answer is something like 45%. The university takes a huge rakeoff of 55% to pay for buildings, infrastructure (e.g. networking, plumbing), deans, blah blah... that's where the university's income comes from.

      So, I'm sorry to tell you, that if Fry's sells a computer for $1500, you need a much bigger grant to buy it. Try $6k.

    3. Re:I'll do it for 1 million by metrazol · · Score: 2, Informative

      The $5,000,000 is for a little thing called overhead. To pay the guys in the lab where I work to do this (yep, they're upstairs) costs salaries, benefits, insurance, retirement plans, and so on. Then, add in the cut that USC and every other middleman takes and you're left without too much cash. Labor is the big cost. A dozen G5's to tinker with? Don't bother getting a discount. Need a digital video camera to put "content" on your intranet? Here's $3,000. And so on...

      --
      "Life's funny sometimes." "And sometimes it isn't." --Cat's Cradle
  5. Sheesh by ItWasThem · · Score: 2, Funny

    So basically they just spent $5.5 million built the worlds most expensive intranet? Man with that kind of money I would've rather had the government buy 2 more toilet seats.

  6. In ten years... by sandbenders · · Score: 5, Insightful

    In ten years everyone will wonder why USC and Berkley produced all of the decade's best crackers. This project will result in three things:

    1. Good dissertations for CS PhDs.
    2. More secure software, which will rarely be implemented and even more rarely be implemented well.
    3. A whole bunch of research assistants who think they are l33t h4x0rs. And some of them will be right.

    --
    Eagles may fly, but weasels don't get sucked into jet engines.
    1. Re:In ten years... by cheekyboy · · Score: 2, Interesting

      What you need is a real virus writer to join the Uni and join this program. Then he can 'sim' a new worm that is smart to avoid blocks and firewalls.

      --
      Liberty freedom are no1, not dicks in suits.
  7. PLEASE oh please oh please! by MoxCamel · · Score: 2, Funny

    I want on that internet! This one sucks, please oh please for the sake of all that is good and fermented, let me off this one! :)

    1. Re:PLEASE oh please oh please! by mblase · · Score: 2, Funny

      You don't want that; it's designed for hacking, so their model version of Slashdot is probably made up entirely of BugTraq articles, Microsoft exploits and lame "F1rst p0st!" comments.

  8. Re:Is it dead already? by nate1138 · · Score: 5, Funny
    My old roommate used to say that only two good things ever came from Berkeley:
    • BSD
    • LSD

    Of course he went to Cal-Tech (Which I've always heard was a trade school for surfers ;-)
    --
    Where's my lobbyist? Right here.
  9. Simulating current internet activity by Alystair · · Score: 2, Interesting

    I wonder how they will be going around to simulate the current p2p and other activity on it...

  10. Questions remain by bwaynef · · Score: 4, Interesting
    I think this is a straight-forward approach but there are problems that need to be addressed.

    • How will they implement the latencies and delays that commonly befall the internet.
    • Where will the millions of unique traffic-data originate.
    • How will they mimic the different styles of hacking.

    It would be interesting to see how they implement this network.

    • Are they going to be two seperate networks.
    • Will they be one network connected over an existing internet link?
    • If they connect over an existing internet link how will they deal with that connection as its no longer a simulation

    I don't think that we have a requirement to see any of the information that I've questioned above but this information could lead /. to be more informed on this situation.

  11. Just pretend don't hate me... by Dareth · · Score: 3, Funny

    ... but can I be the RIAA and sue all the users of your model internet???

    This is in the name of science!

    I won't be real bad, just demand they hand over all their old video cards when they get new ones.

    I'm still running my old Voodoo 3 3500, yeah baby it still ROCKS!

    --

    I only look human.
    My mother is a halfling and my dad is an ogre, so that makes me an Ogreling
  12. Quick question: by mblase · · Score: 2, Insightful

    I know you can hack a server, but how exactly do you hack "the Internet" (model or otherwise)?

    1. Re:Quick question: by heironymouscoward · · Score: 2, Insightful

      Hacking the Internet is quite different from hacking a server. A single server behaves in an obvious and predictable fashion. The Internet behaves like a natural system: clearly there are always going to be a number of hacked systems, but the overall impact depends on how these systems have been hacked, what damage the hackers do, how fast the damage spreads, etc.

      What I presume this 'model' will be used for is to do things like simulate how fast and far a new kind of virus could spread.

      It's extremely pertinent research and the price tag is trivial compared with the cost of damage to the real thing.

      --
      Ceci n'est pas une signature
  13. The Real Reason by fireboy1919 · · Score: 4, Funny

    Tech support companies the world over are tired of people calling up and asking, "Is your internet better than the internets of other companies?" They made a plea to the US government to do something about it, who, out of embarassment for the American people's stupidity, promptly made up a new reason to make another, lower quality internet.

    From now on, rather than spending several hours trying to explain the concept of the internet to people who have trouble walking and chewing gum at the same time, tech supporters will be able to simple say, "Yes."

    --
    Mod me down and I will become more powerful than you can possibly imagine!
  14. Just offer prizes to hackers by G4from128k · · Score: 4, Insightful

    I'm not sure how they plan to "model" the internet, but I would argue that the internet is its own best model. Anything else will lack some exloits present in the "real" net while have other exploits absent in the real net (bugs in the model's software).

    I would take the $5.5 million and divide it up into $5000 prizes that are payable to any hacker that demonstrates and documents a hack on the real net. The profs and grad students could ajudicate the prize giving. They would find at least 1100 exploits this way (fewer if they have to pay those pesky grad students or usurious university accounting department overhead rates).

    If letting hackers profit from hacking the actual internet is too scary/illegal, then the university could create a small publically exposed network running a variety of apps, OS, etc.

    --
    Two wrongs don't make a right, but three lefts do.
    1. Re:Just offer prizes to hackers by dido · · Score: 2, Insightful

      Do the words "Cyber-Armageddon" mean anything to you? I imagine what some of the things they'll try to simulate are the really monstrous distributed denial of service attacks that would cripple the entire Internet for days and cause untold amounts of damage and inconvenience for millions all over the world. Things that would make a major slashdotting look like a mild hiccup. If they did that on the real Internet, the damage it would cause worldwide would be worth a helluvalot more than a piddly US$5.5 million.

      I imagine they'll be dealing more with network structural problems than cracking problems. They'd also be doing experiments on some conjectures like the Warhol worms and flash worms we've heard about that can infect 60% or more of all the hosts on the Internet in under 15 minutes. If they did such an experiment on the real Internet, that would again cause a lot of major disruption, especially if they made a mistake in the worm's programming, and that's not exactly an unknown occurrence... The Great Worm itself had a bug that rendered it far less benign than Robert T. Morris planned. If that happened on one of the world's largest WAN's however, no big deal, it'll just inconvenience the grad students in charge of it, and they'd need to reinstall, which is probably part of what they'll be getting paid to do anyway.

      What you're proposing by the way, would be tantamount to condoning acts that the Department of Homeland Security (which appears to be one of the agencies funding this project) has labeled terrorism, and which have been illegal since long before 9/11.

      --
      Qu'on me donne six lignes écrites de la main du plus honnête homme, j'y trouverai de quoi le faire pendre.
  15. Similar Project at Iowa State University by logrey · · Score: 5, Interesting

    Iowa State has a similar project funded with a $500,000 grant from the U.S. Department of Justice.
    Iowa State Computer Security Lab

  16. The nature of government grants by mystery_bowler · · Score: 4, Informative

    For the last few years I've been developing software systems for law enforcement, so occassionally I pick up interesting bits of information about how government funding works. If you didn't hear about it - and not many people did - the Dept. of Homeland Security made a sort of "open call" (via the Dept. Of Justice, if I remember correctly) about a year or so ago. It was - more or less - an open invitation for vendors to propose innovative ideas to the DHS about fighting terrorism within the United States. The really interesting thing about the open call was that it was specifically worded to encourage "innovative" and "new" approaches. I joked at the time that I actually felt good about the open call...it seemed like the guys at the DHS were acknowledging that they didn't have a clue what to do and where looking for expert help on making things radically better.

    I'd be interested to find out if the "model internet" was a proposed idea. In terms of government funding, $5 million isn't all that much, so I wouldn't be surprised to see if this was an idea pitched by people at UCB and USC during the open call. I'd heard that big names asking for reasonably small amounts of money were getting through pretty easily.

    I tried to convince my company to pitch a variant of our crime analysis/trendspotting tools. Include a reference per recorded crime that indicates political or religious bias as the motive of the crime. Get a concentration of those - even if they are "lesser" crimes like vandalism or simple assualt - and you've got "smoke". And where there's "smoke"...

    --

    My sigs always suck.
  17. So is this anti-terrorism too? by PJ1382 · · Score: 2, Interesting

    So they're building a model of the internet to hack, so they can better deal with threats. Is the government really that much at risk that they need to do this? Surely they could just hire some really good hackers at ludicrous salaries to protect themselves?

    Or is this really more war on terror stuff? Do they think that terrorist groups are operating over the internet and are they actually setting up some sort of training ground for an elite anti-terrorism unit to stop Osama Bin Laden getting his email or something?

    Seems a bit sus to me...
  18. Re:Tin foil hat or not? by ShinmaWa · · Score: 3, Interesting

    I'm absolutely positive that part of the agreement was that Berkeley could publish their findings once the project was over. If absolute secrecy was important, then it wouldn't be done at Berkeley (and it wouldn't be reported on Slashdot). Its that simple.

    Besides, in order to "shore up the US", there would need to be a lot of cooperation among the multitudes of private enterprises that actually run and maintain the network. Most of the big players in this arena are large, multinational companies that would be inclined to shore up ALL their networks, not just the ones in the US.

    --
    The /. Effect: Thousands of users simultaneously accessing a site to not read its content.
  19. here's the real scoop by t_parker16 · · Score: 5, Informative

    all this speculating on what's involved, but the project is described in pretty good detail over at the ISI web site. (and so, its apparently not USC specifically but the usc information sciences institute):

    http://www.isi.edu/stories/70.html

    excerpt:

    "The DETER testbed will consist of approximately 1,000 computers with multiple network interface cards, located off the actual Internet. Three permanent hardware clusters, or nodes, at UC Berkeley and at ISI's Southern California and Virginia facilities, will serve as the core of the system.

    "This isolated mini-Internet will serve as a shared laboratory where researchers from government, industry and academia can test existing and new security technology, using a wide variety of attack techniques."

  20. Re:Is it dead already? by CausticWindow · · Score: 2, Informative

    Now you're giving Berkeley too much credit. LSD was synthesized by Albert Hoffman of the Sandoz Chemical Corporation of Basel, Switzerland in 1938.

    They might've used a lot of LSD in Berkeley during the 60's, but it wasn't discovered there.

    --
    How small a thought it takes to fill a whole life
  21. Re:This will fail by orangesquid · · Score: 3, Insightful

    What makes you think they would pick a good operating system on purpose? Rather, they could put up many different systems known to be hackable, write worms or scripts designed to hack into these machines, and try to create technologies to capture/contain and lessen/slow infections and security breaches.

    I don't think the point is to re-create OpenBSD. The goal is probably more of a cross between network monitoring, intrusion detecion systems, and automatic network reconfiguration.

    The Internet can already route around problems because of redundancy. Sophisiticated routers can control and shape traffic. But, as of yet, there's no widespread technology to protect entire networks from security problems. We will never create perfect systems... so we must create countermeasures so that when our systems fail, they fail in the smallest and least dangerous ways possible. It's like fault isolation.

    --
    --TheOrangeSquid Is it any wonder things seem so awry? We swim in a sea of confusion and don't have to think to survive
  22. Re:Tin foil hat or not? by gnu-generation-one · · Score: 2, Insightful

    "If they find fundamental flaws in the systems will they keep them secret to shore up US networks?"

    I don't think Internet Explorer is a secret anymore

  23. UCB still in business? by molrak · · Score: 2, Funny

    It's good to see that the UCB is still in business, even after their show got cancelled. It makes me wonder if this project is somehow related to their Bucket of Truth project.

    --
    You're only as smart as your brain.
  24. Re:Tin foil hat or not? by xenocide2 · · Score: 2, Interesting

    Interesting view you have of Berkeley, and publishing secrecy. Berkeley professors have been placed in tough spots before, and I don't see any reason why this would be different. Absolute secrecy may not be needed for this sort of project, but the Homeland Defense group isn't the only people concerned about publication. You can expect that any paper to be published must be sent to the Homeland Defense and the NSF groups and approved, with about six months delay, depending on the scope and severity of the discoveries made.

    On the other hand, if the Dept of Homeland Security doesn't like it for whatever reason, they'll likely try to stop publication, reguardless of what the grant says and doesn't say.

    --
    I Browse at +4 Flamebait

    Open Source Sysadmin

  25. The "What if machine" by brakett · · Score: 2, Insightful
    The way I understod the article, this is supposed to be a wan that can be used as a what-if-machine. This would be a way to se the results of changing widely used standards.

    What if everybody used IPv6?
    What if you had to prove your id to send mail?
    What if a Curious Yellow -like worm were realeased?
    What if.... well you get my point.

  26. USE THE RIGHT WORD!!!!!! by some+guy+I+know · · Score: 2, Insightful

    It's "cracking", not "hacking", dammit!
    I expect this from mainstream media, but not here.

    --
    Those who sacrifice security to condemn liberty deserve to repeat history or something. - Benjamin Santayana
  27. Is it really just defensive? by billstewart · · Score: 2, Interesting

    I'm sure that most of the work that'll be done with this project is defensive, but is some of it really going to be offensive as well? Most of the time it's going to be modelling different methods of attacking network interconnection and different methods of defending against it, but when you've got a thousand machines with heavy-duty cracker tools located a few dark-fiber meters away from several Internet2 routers and just down the road from the San Francisco and DC area internet junction points, it's got to be real tempting to not only mail out CDs of crackerware to the military's cyberwarriers, but also to occasionally jack in to the real Internet and go pound some target, or upload a few hundred thousand copies of Zombieware N.2 to their public-side counterparts.

    --

    Bill Stewart
    New Fast-Compression-only CPR http://preview.tinyurl.com/dy575ks
  28. a model? by hyrdra · · Score: 3, Insightful

    The problem with their "model" is that something as complex as the current Internet as it exists today can't really be modeled, at least not very well. It's a huge chaotic system thats constantly changing and growing, so when you try to model it your model is going to be out of date before you can do anything useful with it. I really don't think $5 million can buy even a small representation of what the Internet is today. Think of the OSI layers and all the different software, hardware, protocols, methods, systems and manufactures in place at each layer. Each of those has its own set of vulnerabilities, holes, etc. and keep in mind there are many different versions of each of those running at the same time across different networks.

    This complexity is precisely what makes tracking and solving problems with today's Internet so hard.

    I am curious as to what they expect to study and find from this model. Today's problems with the Internet and networking in general are largely social, economic, or political. Figuring out some neat new protocol isn't going to make backbone provider X update their entire network. Worms and the such are also the bain of a social problem. As long as we have smart programmers with free time, there will be worms and exploits of the system no matter what procedures are in place or how smart the network is; The fix for said worms are timely patches and updates, however most users won't and don't do this, hence the epidemics.

    This might make some great academic research and a neat new toy for the University but I fail to see how it can find applications in the real world where the problems are much harder than the technical ones this project (presumably) hopes to solve.

    --


    "I'll just chip in a bit for RedHat: I actually have that installed on my university machine." - Linus, '95