Stealthy MOnitoring KErnel (SMOKE)

Award Information
Agency:
Department of Defense
Branch
n/a
Amount:
$79,981.00
Award Year:
2011
Program:
SBIR
Phase:
Phase I
Contract:
N00014-11-M-0243
Award Id:
n/a
Agency Tracking Number:
N111-081-0419
Solicitation Year:
2011
Solicitation Topic Code:
N111-081
Solicitation Number:
2011.1
Small Business Information
111 Third Ave. S., Suite 100, Minneapolis, MN, -
Hubzone Owned:
N
Minority Owned:
N
Woman Owned:
N
Duns:
165988937
Principal Investigator:
Jason Sonnek
Member of Technical Staff
(651) 214-5713
jason.sonnek@adventiumenterprises.c
Business Contact:
Kyle Nelson
CEO
(612) 280-9843
kyle.nelson@adventiumenterprises.co
Research Institution:
Stub




Abstract
Intrusion detection and prevention systems capable of defending production systems depend on a monitoring kernel capable of providing complete, accurate, real-time data regarding the execution state of the system. Existing solutions lack the adaptability, scalability or low observability necessary to protect the millions of embedded systems, desktops and servers used by the DoD. By leveraging second-generation hardware virtualization and management technologies, Adventium's Stealthy MOnitoring KErnel (SMOKE) will provide a stealthy, evolvable, low-overhead monitoring kernel. By focusing on exposing data acquisition capabilities with low observability, SMOKE provides a more assurable foundation for development of advanced intrusion detection, intrusion prevention and malware analysis capabilities. Since SMOKE builds upon technology already built into modern chipsets coupled with enterprise-ready VMM technology, it will be suitable for large-scale deployment on desktops and servers. Furthermore, SMOKE provides defense-in-depth and enables cross-view validation. This Phase I SBIR will demonstrate technical feasibility of SMOKE and will lay the foundation for future Phase II implementation efforts by conducting observability, overhead and threat assessments. SMOKE will be immediately applicable in a broad range of IDS/IPS applications and complements Adventium's on-going efforts to develop high-assurance VMM-based CDS and host monitoring solutions.

* information listed above is at the time of submission.

Agency Micro-sites


SBA logo

Department of Agriculture logo

Department of Commerce logo

Department of Defense logo

Department of Education logo

Department of Energy logo

Department of Health and Human Services logo

Department of Homeland Security logo

Department of Transportation logo

Enviromental Protection Agency logo

National Aeronautics and Space Administration logo

National Science Foundation logo
US Flag An Official Website of the United States Government