Multiple operating system rotation environment moving target defense

a technology of operating system and target defense, applied in the direction of unauthorized memory use protection, instruments, error detection/correction, etc., can solve the problems of static systems being particularly vulnerable to zero-day attacks, cyber-attacks posing a major threat to computing systems,

Active Publication Date: 2016-03-03
UCHICAGO ARGONNE LLC
View PDF0 Cites 18 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Benefits of technology

This patent describes a system and method for providing a multiple operating system rotation environment, which allows for a seamless hand-off from one host device to another when a user requests an application. The system includes multiple host devices with different operating systems, and an administrator device that synchronizes the host devices and performs the hand-off operation. The technical effects of this system include improved user experience, reliability, and flexibility for application development and deployment.

Problems solved by technology

Cyber-attacks continue to pose a major threat to computing systems.
Such static systems are particularly vulnerable to zero-day attacks (e.g., an attack that exploits a previously unidentified vulnerability).

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Multiple operating system rotation environment moving target defense
  • Multiple operating system rotation environment moving target defense
  • Multiple operating system rotation environment moving target defense

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0013]Referring to the figures generally, systems and methods for utilizing MORE-MTD to provide enhanced computer system security through a rotation of multiple operating systems is described. MORE-MTD is a proactive defense (e.g., not reactive to identified attacks) effectuated by a rotation of operating systems, thereby increasing attacker uncertainty and the cost of attacking while reducing the likelihood of an attacker locating a vulnerability and reducing the exposure time of any located vulnerability. The MORE-MTD environment is effectuated by rotation of the operating systems at a given interval. The rotating operating systems create a consistently changing attack surface for remote attackers. The rotating operating systems help isolate and protect back-end data stores from potential impacts that could result from exploits of zero-day vulnerabilities. A zero-day attack occurs when a previously unknown vulnerability in a computer application is exploited on “day zero” of aware...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

Systems and methods for providing a multiple operating system rotation environment (“MORE”) moving target defense (“MTD”) computing system are described. The MORE-MTD system provides enhanced computer system security through a rotation of multiple operating systems. The MORE-MTD system increases attacker uncertainty, increases the cost of attacking the system, reduces the likelihood of an attacker locating a vulnerability, and reduces the exposure time of any located vulnerability. The MORE-MTD environment is effectuated by rotation of the operating systems at a given interval. The rotating operating systems create a consistently changing attack surface for remote attackers.

Description

STATEMENT OF GOVERNMENT INTEREST[0001]The U.S. Government has rights in this invention pursuant to Contract No. DE-AC-02-06CH11357 between the U.S. Government and the UChicago Argonne, LLC representing Argonne National Laboratory.FIELD[0002]The present disclosure relates generally to systems that thwart cyber-attacks by employing moving target defense (“MTD” hereafter). In particular, the disclosure relates to systems that utilize multiple operating system rotation environment (“MORE” hereafter) MTD to counter cyber-attack attempts.BACKGROUND[0003]Cyber-attacks continue to pose a major threat to computing systems. As shown in FIG. 1, in a typical client-server computing system 100, a client device 102 interacts with a host computer 104 (e.g., a virtual machine, a host computer, etc.). A typical client device 102 is primarily concerned with accessing the application layer 106 of the host computer 104 (e.g., the application the user is attempting to access). The client device 102 typi...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(United States)
IPC IPC(8): H04L29/06G06F9/44
CPCG06F9/441H04L63/1466G06F21/53H04L63/1425H04L63/1441
Inventor EVANS, NATHANIELTHOMPSON, MICHAEL
Owner UCHICAGO ARGONNE LLC
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products