Back to news

September 12, 2018 | International, C4ISR

DARPA Wants to Find Botnets Before They Attack

By Jack Corrigan

The defense agency awarded a contract to develop a tool that scours the internet for dormant online armies.

The military's research branch is investing in systems that automatically locate and dismantle botnets before hackers use them to cripple websites, companies or even entire countries.

The Defense Advanced Research Projects Agency on Aug. 30 awarded a $1.2 million contract to cybersecurity firm Packet Forensics to develop novel ways to locate and identify these hidden online armies. The award comes as part of the agency's Harnessing Autonomy for Countering Cyber-adversary Systems program, a DARPA spokesperson told Nextgov.

To build botnets, hackers infect internet-connected devices with malware that allows them to execute orders from a remote server. Because the virus sits dormant most of the time, the owners of infected devices rarely know their computer, smartphone or toaster has been compromised.

Through the HACCS program, DARPA aims to build a system that can automatically pinpoint botnet-infected devices and disable their malware without their owners ever knowing.

Launched in 2017, the program is investing in three main technologies: systems that uncover and fingerprint botnets across the internet, tools that upload software to infected devices through known security gaps, and software that disables botnet malware once it's uploaded. Packet Forensics' technology falls under that first category, the DARPA spokesperson said.

Eventually DARPA plans to integrate each of those technologies into a single system that can spot, raid and neutralize botnet-infected devices without any human involvement. Because the tool would only target botnet malware, people could continue using the devices just as they had before, the agency said in the program announcement.

During phase one of the three-part project, Packet Forensics will build a technology capable of scanning some five percent of global IP addresses and detecting botnets with 80 percent accuracy. By the end of the program, DARPA anticipates the system to analyze 80 percent of the global internet and correctly spot botnets 95 percent of the time.

The effort is scheduled to last to four years, with the first phase running 16 months. Later phases include additional funding.

https://www.nextgov.com/cybersecurity/2018/09/darpa-wants-find-botnets-they-attack/151182/

On the same subject

  • China’s latest class of warship makes its public debut

    April 29, 2019 | International, Naval

    China’s latest class of warship makes its public debut

    By: Mike Yeo MELBOURNE, Australia – the first of a new class of guided missile destroyer from China made an appearance at a naval review to mark the 70th Anniversary of the country's navy. The Type 055 destroyer, named the Nanchang, was among several ships of the People's Liberation Army Navy or PLAN that took part in the naval review held off the northern Chinese city of Qingdao with Chinese President Xi Jinping in attendance. China's first aircraft carrier Liaoning, a refurbished Soviet-era ship, was also in attendance along with 18 warships from 13 other nations including Australia, India and Japan. The United States declined an invitation to send its ships to the naval review, and France was disinvited after its frigate Vendémiaire sailed through the Taiwan Straits prior to the event, Reuters reported. The Nanchang was launched at Shanghai's Jiangnan Changxin shipyard in June 2017. The Type 055, which is classed as a cruiser by the Pentagon, measures almost 590 feet and displaces 10,000 tons according to specifications released by China — although some naval analysts believe that figure is an underestimation. Each ship is also equipped with a total of 112 vertical launch cells that are capable of launching either surface-to-air or anti-ship missiles, and fitted with a modern sensor suite that includes phased array radars. Speaking at a regular press briefing conducted by China's Ministry National Defense on Thursday, Senior Col. Ren Guoqiang confirmed that the Nanchang is on the verge of completing sea trials and will be officially handed over to the PLAN later this year. In addition to the Nanchang, recent open-source satellite and aerial imagery show that seven other Type 055s are in various states of construction and fitting out at the two major Chinese naval shipyards in Shanghai and Dalian. The latter is also where China's first domestically-built carrier, which is based closely on the Liaoning, is currently being completed. Further underscoring the astonishing pace of China's ongoing naval buildup, the photos also show five other smaller Type 052D destroyers undergoing construction at Dalian with six more being built at Shanghai. The latter shipyard has four more destroyers of an unknown sub-type being put together, along with what are reportedly the modules for China's third and largest aircraft carrier. https://www.defensenews.com/global/asia-pacific/2019/04/26/chinas-latest-class-of-warship-makes-its-public-debut/

  • Rafael unveils once-secret Ice Breaker missile

    July 15, 2022 | International, Aerospace, Naval

    Rafael unveils once-secret Ice Breaker missile

    A Rafael official told Defense News the missile is nearing full-scale development and that the company has spoke with customers on three different continents regarding potential contracts.

  • RPAS maritime surveillance services now underway in Iceland

    May 2, 2019 | International, Aerospace

    RPAS maritime surveillance services now underway in Iceland

    A medium altitude long endurance RPAS drone is being used by the Icelandic maritime authorities to enhance the maritime picture over its Exclusive Economic Zone, the service follows a request made by the Icelandic coast guard to EMSA and is expected to run until mid-July. The RPAS chosen will be integrated into the existing surveillance mechanisms and procedures covering coast guard functions in the areas of maritime safety and security, search and rescue, environmental protection, law enforcement and fisheries control. The particular RPAS in use is adapted to withstand the strong winds and icy conditions common to the North Atlantic Ocean. It has an endurance of over 12 hours and may perform maritime surveillance tasks in areas extending as far as 200nm from the shoreline. The operations are based at the Egilsstaðir airport in the east of the island. From there, they have the capability to cover more than half of the Icelandic Exclusive Economic Zone. EMSA's RPAS services for Iceland involve the cooperation of several Icelandic authorities, who will be able to follow the missions remotely thanks to EMSA's RPAS data centre. Users will include the Icelandic coast guard, the fisheries directorate, the environment agency, the customs directorate, the police force, and the search and rescue association. The Hermes 900 RPAS is under contract by EMSA from CEiiA – the Centre of Engineering and Innovation. It is a MALE-class fixed wing, single engine RPAS and is capable of night and day operations. Using SATCOM technology, it can operate beyond radio line of sight. The payload consists of electro-optical and infra-red video cameras, maritime radar, AIS receiver, and an EPIRB receiver. “EMSA's RPAS services give us and our users, in this case Iceland, another lens through which we can gain even greater situational awareness. Our services have been used by three different member states since the beginning of the year and more are in the pipeline for the upcoming months,” explained Executive Director, Maja Markovčić Kostelac. EMSA's RPAS services were set up in 2017 for maritime surveillance and monitoring operations to support national authorities involved in coast guard functions. This includes: maritime pollution and emissions monitoring; detection of illegal fishing, anti-drug trafficking, and illegal immigration; border surveillance; and, search and rescue operations. For further information and media enquiries, please contact: Tel. +351 21 1209 281 e-mail information@emsa.europa.eu http://www.emsa.europa.eu/emsa-homepage/2-news-a-press-centre/news/3525-press-release-rpas-maritime-surveillance-services-now-underway-in-iceland.html

All news