Back to news

April 30, 2018 | International, C4ISR

DARPA wants to arm ethical hackers with AI

By:

The Defense Advanced Research Projects Agency (DARPA) wants to leverage human-artificial intelligence teaming to accelerate the military's cyber vulnerability detection, according to agency documents.

The task of securing the Pentagon's diverse networks, which support nearly every function of the military's operations, presents a nightmare for defense officials. The current time-intensive and costly process involves extensively trained hackers using specialized software suites to scour the networks in search of vulnerabilities that could potentially be exploited, but the scarcity of expert hackers makes detecting cyberthreats a challenge for the Defense Department.

DARPA's Computers and Humans Exploring Software Security (CHESS) program seeks to bolster existing cyber defenders with a new tool that would render much of the current toolkit ancient history: artificial intelligence.

The program aims to incorporate automation into the software analysis and vulnerability discovery process by enabling humans and computers to reason collaboratively. If successful, the program could enhance existing hacking techniques and greatly expand the number of personnel capable of ethically hacking DoD systems.

To achieve its goal, DARPA will solicit proposals from industry across five technical areas, including developing tools that mimic the processes used by expert hackers and ultimately transitioning a final solution to the government.

“Through CHESS, we're looking to gather, understand and convert the expertise of human hackers into automated analysis techniques that are more accessible to a broader range of technologists,” the DARPA program description reads. “By allowing more individuals to contribute to the process, we're creating a way to scale vulnerability detection well beyond its current limits.”

While DARPA sees artificial intelligence as an important tool for enhancing cybersecurity efforts, officials emphasize the essential role humans play in the collaborative process.

“Humans have world knowledge, as well as semantic and contextual understanding that is beyond the reach of automated program analysis alone,” said Dustin Fraze, the I2O program manager leading CHESS. “These information gaps inhibit machine understanding for many classes of software vulnerabilities. Properly communicated human insights can fill these information gaps and enable expert hacker-level vulnerability analysis at machine speeds.”

The CHESS program will span three phases lasting a total of 42 months. Each phase will focus on increasing the complexity of an application the CHESS system is able to analyze effectively.

https://www.c4isrnet.com/it-networks/2018/04/27/darpa-wants-to-arm-ethical-hackers-with-ai/

On the same subject

  • What Will It Take To Get Parked Aircraft Back Into Service?

    April 22, 2020 | International, Aerospace

    What Will It Take To Get Parked Aircraft Back Into Service?

    Sean Broderick What will it take to get parked aircraft back into service? Air Transport and Safety Editor Sean Broderick responds: Airlines are consulting with aircraft and engine original equipment manufacturers (OEM) for specific guidance, because most maintenance manuals do not cover how to idle aircraft/engines for a short period of time (30-90 days). Typical maintenance manuals' procedures for parking aircraft are focused on long-term storage, which most airlines aren't doing, because they plan to reactivate their fleets as soon as possible, with the exception of aircraft they might retire. Once these procedures are in hand, it's about having technical manpower that is able to follow a task card and operate aircraft systems. Some supplier opportunities exist—engine covers are hard to find, for instance, so operators are turning to foam inserts and other options—but that is more about keeping aircraft out of service longer versus bringing them back out. Another note: Some operators are keeping aircraft on “active maintenance” programs until they understand what their fleet needs will be post-pandemic. Basically, this treats an airframe as if it's flying even though it is not. Regular maintenance intervals such as daily and weekly checks are performed, but there may be some manpower issues, especially with operators that do not have sufficient tech ops talent in-house. https://aviationweek.com/mro/what-will-it-take-get-parked-aircraft-back-service

  • La France, l’Allemagne et l’Espagne lancent le chantier de rénovation du Tigre

    November 2, 2020 | International, Aerospace

    La France, l’Allemagne et l’Espagne lancent le chantier de rénovation du Tigre

    La France, l'Allemagne et l'Espagne s'apprêtent à lancer en novembre la phase de réalisation du programme d'hélicoptère d'attaque « Tigre standard 3 » sur la base d'une coopération entre les trois pays. La France va embarquer le nouveau missile de MBDA dans ce futur Tigre au standard 3, selon La Tribune. Le MAST-F a une capacité de neutralisation de combattants, de cibles blindées et d'infrastructures, de jour comme de nuit jusqu'à 8 000 mètres. La Tribune du 30 octobre 2020

  • North Korean Hackers Steal $10M with AI-Driven Scams and Malware on LinkedIn

    November 23, 2024 | International, C4ISR, Security

    North Korean Hackers Steal $10M with AI-Driven Scams and Malware on LinkedIn

    North Korea's Sapphire Sleet stole $10M in crypto using LinkedIn scams, AI tools, and malware.

All news