Welcome!

Big Data Journal Authors: Liz McMillan, David Strom, Stephen Pierzchala, Elizabeth White, ExtraHop Networks

Blog Feed Post

DARPA’S Cyber Tools: We have had our hands on DARPA’s distribution platform for cyber defense tools

By

CybersoldiersIt’s long been known that to win in a cyber war, DoD has to have a way to get an asymmetric advantage in time, cost and contribution – something that is mostly alien to the Defense Acquisition process. A few years ago DARPA started something called the Cyber Fast Track (CFT) program. This awesome, by all accounts successful proposal is being rewarded with project cancelation (it will stop accepting proposals on 1 April 2013). But still there is good from the program we can learn from. The idea behind this program was to create a vehicle where they could bring in those nonstandard, cutting edge organizations and individuals not always found hanging out with the standard defense contractors – like hackers. From our observation this did result in some great new capabilities that can make a difference.

The hope was that through the CFT Program, DARPA could pull together multiple small cyber projects that are being developed on the fringe.  It was advertised via Announcements that were periodically updated (the current one has a response date of 1 April 2013 as Amendment 4, and it will be the last one).  [Find it as Solicitation Number DARPA-RA-11-52, located here ]

There are currently almost 100 programs funded under this program. I recently got to see one of the CFT funded efforts in use.  DARPA provided funding last November to Secure Ideas, LCC to put together a distribution platform for cyber defense tools.  It’s called the Active Defense Harbinger Distribution – ADHD.  Basically, this is a live environment for active cyber defenses. The intended audience here is the defenders in the cyber battle. Having the ability to rapidly gather the tools that are being developed daily is essential, because DoD will never be able to develop tools like this as they need them.

Through the ADHD program many of the current active defensive projects are tied together under one common platform.  It’s free and anyone can download it.  Using a live environment, cyber warriors can practice their trade by booting the ADHD on any Intel-based system from a DVD or USB flash drive, or run the test environment from a virtual machine.

The tools are pretty cool:  things like decloaking tools (to find the physical location of the attacker), NOVA (to detect network based reconnaissance efforts by spawning many virtual decoy machines), pushpin (to identify every tweet, YouTube video, flicker picture, etc. within a geographical location), spider trap (to trap web crawlers), web bug server (to embed a bug into a web document), or web labyrinth (to make a maze of web pages to confuse the web scanners). With all these fun tools to keep our DoD cyber warriors busy, it’s no wonder so many folks are migrating to that field!

An additional Cyber opportunity through DARPA is a new program called “Cyber Targeted-Attack Analyzer” to use big data to defend against targeted attacks.  The BAA is late coming out – like most solicitations these days!  Assuming it does happen, this will open up some exciting new work and I’m looking forward to seeing this project thrive.  Companies proficient in big data should watch FEDBIZOPs for the imminent release of the BAA.

Read the original blog entry...

More Stories By Bob Gourley

Bob Gourley, former CTO of the Defense Intelligence Agency (DIA), is Founder and CTO of Crucial Point LLC, a technology research and advisory firm providing fact based technology reviews in support of venture capital, private equity and emerging technology firms. He has extensive industry experience in intelligence and security and was awarded an intelligence community meritorious achievement award by AFCEA in 2008, and has also been recognized as an Infoworld Top 25 CTO and as one of the most fascinating communicators in Government IT by GovFresh.

Cloud Expo Breaking News
OpenStack Cells is one of the most anticipated features in Grizzly, the seventh release of the open source software that offers more block storage options and scalability. It has been running in production at Rackspace for more than a year. In his session at the 12th International Cloud Expo, Wayne Walls, OpenStack Developer Advocate at Rackspace Hosting, will discuss nova cells and how it is changing the way you design your cloud applications and infrastructure. He will explain how OpenStack ...
"Since Cloud Expo is running the week of June 10, we thought it'd be a great idea to schedule our Meetup this week. That way, if you have colleagues, friends, or family in town that week for the Expo, you can invite them to join you!" With those words, the OpenStack New York Meetup Group's organizer's launched a landing page this week where anyone interested can register for the June 12 evening event.
“Cloud has everything to do with what has happened with Big Data,” explained Jason Deck, Director of Strategic Alliances at Logicworks, in this exclusive Q&A with Cloud Expo Conference Chair Jeremy Geelan. “Big Data doesn’t exist in its easily accessible way without cloud. From reduced startup costs, to cheap storage, to fast processing, to adequate security, to the easy incorporation of third-party analytics tools, cloud made Big Data accessible to customers of all sizes, with all different bud...
“Open source has always provided a number of benefits, including easing adoption costs, propagating a better understanding of the technology, and allowing for faster evolution and commercialization of products and services based on it,” noted Terry Woloszyn, Founder & CEO, Leeward Security Ltd., in this exclusive Q&A with Cloud Expo Conference Chair Jeremy Geelan. “This is clearly evident with the OpenStack and CloudStack,” Woloszyn continued, “and others that have been quickly commercialized as...
SYS-CON Events announced today that OpenStack will exhibit at SYS-CON's 12th International Cloud Expo, which will take place on June 10–13, 2013, at the Javits Center in New York City, New York. OpenStack software controls large pools of compute, storage, and networking resources throughout a datacenter, all managed by a dashboard that gives administrators control while empowering their users to provision resources through a web interface. OpenStack powers some of the most widely-used SaaS app...
SYS-CON Events announced today that BUMI (Backup My Info!), the premium provider of managed online backup and recovery solutions for small to mid-sized businesses, will exhibit at SYS-CON's 12th International Cloud Expo, which will take place on June 10–13, 2013, at the Javits Center in New York City, New York. Manhattan-based BUMI (Backup My Info!) is a premium managed service provider specializing in online data backup and recovery. Founded in 2002, the company's data backup and recovery serv...
SYS-CON Events announced today that nfina Technologies, a provider of highly reliable cloud server products, will exhibit at SYS-CON's 12th International Cloud Expo, which will take place on June 10–13, 2013, at the Javits Center in New York City, New York. nfina Technologies develops, manufactures, and markets highly reliable cloud server products, designed to solve the most demanding data center requirements in mission-critical cloud applications. Nfina’s staff has decades of experience in co...
In his session at the 12th International Cloud Expo, Dave Eichorn, Global Data Center Practice Head at Zensar, will share a case study describing how a utility services company handled the migration of its Microsoft platform to the cloud. Challenged with the time-consuming task of opening operations out of temporary offices, this company struggled with the need to simultaneously access data that was accumulated from a vast amount of data-intensive jobs. Zensar migrated the company’s application ...
“Social, mobile, analytics and cloud can’t be looked at as distinct technology trends; they are facets of the same movement and an everyday reality for consumers and businesses alike,” said Craig Sowell, IBM VP of SmartCloud Marketing, in this exclusive Q&A with Cloud Expo Conference Chair Jeremy Geelan. “This means that businesses need to start looking at trends as one: cloud is the delivery, analytics is the unique insight, social is a shareable service, and mobile is the ubiquitous access.” ...
Organizations across the world are increasingly starting to see the benefits of moving more and more services to the cloud. The focus on the cost-saving potential of cloud is rapidly shifting to completely transforming the business with cloud. As organizations are investing enormous sums on technology they are starting to realize that in order to maximize the return on investment and accelerate the business transformation process the first area of focus should be people. By ensuring the organiza...