CICI: RSSD: LaSIC: Labeled Security Information Capture

Information

  • NSF Award
  • 2232864
Owner
  • Award Id
    2232864
  • Award Effective Date
    2/1/2023 - 2 years ago
  • Award Expiration Date
    1/31/2026 - 5 months from now
  • Award Amount
    $ 599,647.00
  • Award Instrument
    Standard Grant

CICI: RSSD: LaSIC: Labeled Security Information Capture

The University of Memphis (UofM) and Florida International University (FIU) are partnering on project LaSIC (Labeled Security Information Capture) to support NSF’s mission to secure scientific assets. Scientific research relies heavily on cyber assets (networked components and services) that must operate securely to support fundamental scientific research and increase confidence in outcomes and conclusions. Developing robust security requires high-quality, trustworthy datasets to tune, test and validate security models and mechanisms. The research value of such datasets increases greatly if they are labeled, which is essential for developing new machine learning (ML) techniques, and establishing ground truth. However, due to their distributed nature, volume and privacy issues, labeled datasets have been extremely hard to produce and distribute to the security community while respecting user privacy.<br/><br/>LaSIC captures, labels and distributes real traffic from AmLight, a production international research and education network serving several scientific communities, to researchers working on securing scientific data and artifacts. AmLight provides connectivity to numerous science disciplines, including Astronomy, Climate, High-Energy Physics, Genomics, and more. AmLight connects Latin America, the Caribbean, and Africa to the U.S. through multiple submarine optical cable systems, as well as other networks such as ESnet and Internet2 in the continental US. LaSIC uses an existing, unique capture infrastructure and capabilities to record, process, and label datasets, including the ability to capture fine-grained network telemetry through Intel Tofino switches, a custom packet capture tool that supports speeds up to 40G, unsampled flow data derived from raw packet capture, network-wide sampled Netflow data, and alerts from a commercial Intrusion Detection System (IDS) deployed in the network. LaSIC provides multimode, structured, and labeled cybersecurity datasets of networking events that support a wide range of security research. Finally, LaSIC distributes these datasets through various mechanisms according to the sensitivity of the data to protect user privacy.<br/><br/>This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.

  • Program Officer
    Rob Beverlyrbeverly@nsf.gov7032927068
  • Min Amd Letter Date
    8/26/2022 - 2 years ago
  • Max Amd Letter Date
    8/26/2022 - 2 years ago
  • ARRA Amount

Institutions

  • Name
    University of Memphis
  • City
    MEMPHIS
  • State
    TN
  • Country
    United States
  • Address
    101 WILDER TOWER
  • Postal Code
    381523520
  • Phone Number
    9016783251

Investigators

  • First Name
    Julio
  • Last Name
    Ibarra
  • Email Address
    julio@fiu.edu
  • Start Date
    8/26/2022 12:00:00 AM
  • First Name
    Christos
  • Last Name
    Papadopoulos
  • Email Address
    christos.papadopoulos@memphis.edu
  • Start Date
    8/26/2022 12:00:00 AM
  • First Name
    Jeronimo
  • Last Name
    Bezerra
  • Email Address
    jbezerra@fiu.edu
  • Start Date
    8/26/2022 12:00:00 AM

Program Element

  • Text
    Cybersecurity Innovation
  • Code
    8027

Program Reference

  • Text
    Cyber Secur - Cyberinfrastruc
  • Code
    8027
  • Text
    WOMEN, MINORITY, DISABLED, NEC
  • Code
    9102