MIT Launches Three-pronged Effort To Thwart Cyber Attacks
alphadogg writes MIT is attacking cybersecurity from three angles: technical, regulatory and managerial through three programs and in partnership with major corporations. The initiatives include participants from across several MIT schools as well as from outside the university with a goal of making it harder for attackers to succeed in efforts to break into networks, disrupt them, and steal and destroy data. The technical challenge will be met by the school's Computer Science and Artificial Intelligence Laboratory (CSAIL) in cooperation with a group of industry partners – BAE Systems, BBVA, Boeing and Raytheon – that will meet periodically to be briefed about ongoing research."
Engineers have a responsibility to themselves, their profession, and to everybody that comes after them. Our fathers and grandfathers realized this when they invented reliable electronics. If this generation were to make electronics it would be hit and miss, maybe it works or it doesn't, and who cares? Engineers have to make things rock solid and reliable in order to move the profession and the future of the profession forward.
I am so frickin disappointed in the current state of things. Things should be rock solid, reliable, trustworthy. It aint!
“How to keep critical infrastructure safe from potentially life-threatening attacks”
The solution being to not download and run other peoples code on your 'computer', not connect your critical infrastructure to the Internet and to ask the NSA/QCHQ to stop devising methods to dilute security on the Internet.
Silly security rabbit. Program is for funding.
... go back and build all of the systems from scratch and do it right this time.
It little behooves the best of us to comment on the rest of us.
let's be clear here, the people these corporations work are not looking to thwart cyber attacks, they are looking to thwart cyber attacks against themselves. the rest of us will still be considered their cannon fodder.
Anons need not reply. Questions end with a question mark.
My electrical plugs are all three-prong. Maybe thy can assist with this new three-pronged initiative.
Managerial Effort To Thwart Cyber Attacks
Now I am Officially in Dilbert Land
I am so ashamed to have ever known a Software Engineer in my life.
http://en.wikipedia.org/wiki/Aaron_Swartz
They're way behind other efforts. Anyone interested in this stuff look at crash-safe.org and Google Cambrige's CHERI processor project. CHERI already runs a port of FreeBSD. There's also numerous prototypes that put crypto in for confidentiality and integrity protection, some running Linux already. The recent Control Pointer Integrity work is pretty clever and was applied to FreeBSD userland.
Long story short, we already have a bunch of good solutions just waiting to be put into silicon and marketed. I'll be interested in seeing what MIT comes up with. Yet, BAE (with SAFE), Cambrige, and others have largely solved our main problems with usable prototypes. Gotta wonder why the best of INFOSEC research rarely makes press but organizations' promises do.
Nick P.