USA flag logo/image

An Official Website of the United States Government

Malicious Code Defuser

Award Information

Agency:
Department of Defense
Branch:
Office of the Secretary of Defense
Award ID:
78643
Program Year/Program:
2006 / SBIR
Agency Tracking Number:
O053-SP2-1161
Solicitation Year:
N/A
Solicitation Topic Code:
N/A
Solicitation Number:
N/A
Small Business Information
Anacapa Sciences, Inc.
301 East Carrillo Street 2FL P. O. Box 519 Santa Barbara, CA -
View profile »
Woman-Owned: No
Minority-Owned: No
HUBZone-Owned: No
 
Phase 1
Fiscal Year: 2006
Title: Malicious Code Defuser
Agency / Branch: DOD / OSD
Contract: FA8750-06-C-0120
Award Amount: $98,943.00
 

Abstract:

Malicious software is an alarming threat - recent studies show: 80% of corporate computers are infected; 23% of surveyed companies reported deliberate malware downloads by employees; and 75% of the top 50 Internet worms were designed for identity theft. We identify three threat scenarios in defusing malware: (a) actual source code is available; (b) binary code is available but not source code; and (c) the payload has executed. In the first two cases, the objective is to defuse prior to any damage. In the latter case, defusing is a diagnostic "post-mortem", to interdict future damage. This proposal analyzes the technical issues surrounding the problem; describes the requirements for an effective solution; and identifies the technical challenges to reaching the solution. In and of itself, this proposal provides original research. We then lay out specific steps to create and demonstrate: (a) a program verifier to analyze source code for payloads and vulnerabilities; (b) a static analysis tool to analyze binary executables for payloads and vulnerabilities; (c) a virtual environment to safely run executables, allowing payloads to execute harmlessly; and (d) an analysis tool that examines system logs and disk images to automate post mortem analysis when payloads are executed on other systems.

Principal Investigator:

Robert Dick
Principal Scientist
8059666157
radick@anacapasciences.com

Business Contact:

Douglas Harris
CEO
8059666157
dharris@anacapasciences.com
Small Business Information at Submission:

ANACAPA SCIENCES, INC.
301 East Carrillo Street 2FL, P. O. Box 519 Santa Barbara, CA 93102

EIN/Tax ID: 952621814
DUNS: N/A
Number of Employees:
Woman-Owned: No
Minority-Owned: No
HUBZone-Owned: No