4 février 2021 | International, C4ISR, Sécurité

Qatari research center chooses Leonardo for cyber range

BEIRUT — A Qatari cyber research center has selected Leonardo to provide a cyber range and training system to support security operations, the Italian firm announced Feb. 3.

The Qatar Computing Research Institute, or QCRI, was established by the Qatar Foundation for Education, Science and Community Development. The training platform ordered by the QCRI is capable of simulating cyberattacks so users can assess the resilience of digital infrastructure.

“The training is completely to be performed in Qatar, and it is expected, through an approach oriented to ‘train the trainers,' to provide courses to a significant number of operators involved in the cybersecurity framework,” Tommaso Profeta, managing director of Leonardo's Cyber Security Division, told Defense News.

He noted that training and exercise scenarios can be customized using a drag-and-drop graphical interface. The platform can also analyze and classify the results of simulated attacks based on data collected during real-world offensive campaigns. Scenarios can be used for individual training or classroom experiences, and they provide practice for security operations centers and incident response activities.

This training tool “will allow the QCRI to deliver a complete cyber training process, from the design of the learning path to specific training sessions. Users will be able to practice their skills in simulated attack and defense scenarios, employing both information technology (IT) and operational technology (OT). The training will produce qualified teams of operators equipped with up-to-date knowledge and techniques, ready to face ever-evolving cyber threats,” according to a company statement.

“The best cyber training/testing environments are in theory real production systems. But in practice for such environments, institutions, enterprises and organizations cannot easily experience critical situations without paying high, sometime unaffordable prices,” Profeta said. “Training and testing are therefore the two essential, human-driven processes that can effectively support the overall cyber ‘protection' loop, but only if they can cope with real threats and highly realistic systems in highly realistic situations.”

Cyber ranges provide a controlled environment where cybersecurity experts can practice their technical and soft skills in emulated complex networks and infrastructures to learn how to respond to real-world cyberattacks. In these environments, cyber tools can be stressed to reveal their limits and vulnerabilities before deployment into cyberspace. Leonardo's platform challenges such assets and provides digital twin environments for predeployment testing.

Asked whether other Gulf countries have expressed interest in this training system, Profeta said it “has already been presented to other high-level Middle East stakeholders, and a significant level of interest has been registered for the platform.”

What scenarios are available?

Those using the cyber range will try to defend against simulated but realistic cyberattacks. According to Profeta, these include:

  • Man-in-the-middle attacks.
  • Botnets.
  • Exploitation of client and server vulnerabilities with lateral movements in search of sensitive data.
  • Distributed denial-of-service attacks (HTTP flooding or domain name system reflection) designed to disrupt connections to a targeted server.
  • Ransomware via multiple vectors, such as spear-phishing via email or drive-by downloads, relying on DNS-based covert channels.
  • Data exfiltration of personally identifiable information and intellectual property.

Though it's difficult to measure the potential effectiveness of this platform for Qatar, the company official predicted the system will reduce the cost of and improve the user experience in cyber training.

Leonardo also supplies the NATO Computer Incident Response Capability, a cyber defense product.

https://www.c4isrnet.com/cyber/2021/02/03/qatari-research-center-chooses-leonardo-for-cyber-range

Sur le même sujet

  • Army preps for competition limited to Bell and Sikorsky for long-range assault helicopter

    11 décembre 2020 | International, Aérospatial, Terrestre

    Army preps for competition limited to Bell and Sikorsky for long-range assault helicopter

    By: Jen Judson WASHINGTON — The Army is taking its final steps before starting a competition to acquire a Future Long Range Assault Aircraft, and has done so by issuing an intent to solicit bids using means “other than full and open competition,” according to a Dec. 9 post on on the government contracts website Beta.Sam.Gov. This step means that unless a surprise vendor can meet all of the Army's technical and production requirements for FLRAA in the next two weeks, the future aircraft will be supplied by either Bell or Lockheed Martin's Sikorsky. Bell and a Sikorsky-Boeing team have been pitted against one another for years to build and fly technology demonstrators to inform requirements ahead of the FLRAA competition and both are part of a competitive demonstration and risk reduction phase. Bell's V-280 Valor tiltrotor had it's first flight nearly three years ago and Sikorsky and Boeing's SB-1 Defiant coaxial helicopter flew for the first time in March 2019. The draft request for proposals is expected to be released by the end of the year with a final solicitations expected in fiscal 2021. Modernizing its vertical lift fleet is the Army's third highest priority behind Long-Range Precision Fires and Next-Generation Combat Vehicle development. The Army intends to field both a FLRAA and Future Attack Reconnaissance Aircraft by roughly FY30. Bell and Lockheed Martin are also competing against each other in the FARA competition. Bell's offering is the 360 Invictus and Lockheed's entry is the Raider X. In the case of FLRAA, the winner must build eight production aircraft for the first unit equipped by FY30. The plan is to award a contract to a winner in FY22. The winner will proceed to deliver a preliminary design review roughly eight months following the award. According to the pre-solicitation, “the Army has determined through extensive market research, including a July 2020 sources sought, that only two sources exist in the market space that have the capability and capacity of developing, manufacturing, testing and delivering both prototype and initial production FLRAA in the time allocated to achieve the Army's goal of an FUE in FY 2030.” The Army stated that Bell and Sikorsky are those two sources, but notes that “any other responsible, qualified sources, ... that can develop and produce the FLRAA weapon system to achieve First Unit Equipped (FUE) no later than 2030 are encouraged to full identify their interest and capabilities in accordance with the requirements,” within 15 days after publication of the pre-solicitation. Such a vendor would need to deliver a preliminary design review in FY22, start building prototype aircraft in the third quarter of FY23 and eight production aircraft by 2030. Vendors must also prove they are able to build 24 aircraft per year at full-rate production. Those aircraft must be able to fly at 2,000 feet pressure altitude in 85 degree heat with a full payload that consists of 12 troops at 290 lbs each and four crew at 281 lbs each. When the draft RFP drops, it is likely to contain a schedule to deliver air vehicle prototypes and mission systems. The Army was debating between two schedule options to deliver prototypes by roughly mid-2026. The FLRAA program has strong support from Congress. This year's annual defense policy bill authorized $5 million in increased investment in FLRAA advanced component development and prototyping on top of the Army's nearly $648 million request. The FY21 spending bill has yet to go through conference committee, but both the House and Senate proposed additional funding for FLRAA. The House Appropriations Committee proposed a $20 million increase while the Senate Appropriations Defense Subcommittee proposed a $79 million addition. Lawmakers added $76 million in funding to FLRAA's top line in FY20 to drive down technical risk and speed up delivery through the competitive demonstration and risk reduction effort. In FY20, Congress cut $34 million from the Army's other future vertical lift effort — the FARA program — which threatened the service's ability to provide some of its government-furnished equipment to competitors chosen to build and fly prototypes. The Army is supplying its new Improved Turbine Engine Program engine, a 20mm gun, an integrated munitions launcher and its modular open-systems architecture. The Army has since shored up that funding, according to service aviation leadership. https://www.defensenews.com/land/2020/12/10/army-preps-for-competition-limited-to-bell-and-sikorsky-for-long-range-assault-helicopter/

  • L’ONERA et MBDA préparent le premier vol d’un véhicule propulsé par un statomixte

    23 juillet 2021 | International, Aérospatial

    L’ONERA et MBDA préparent le premier vol d’un véhicule propulsé par un statomixte

    Air & Cosmos consacre un dossier aux travaux menés par l'ONERA et MBDA, qui prévoient de faire voler, en collaboration avec la DGA, un véhicule hypersonique propulsé par un statomixte, c'est-à-dire un moteur capable de réaliser successivement une combustion subsonique et supersonique. L'objectif est de réaliser un véhicule d'essai unique, qui permettra de « vérifier le comportement d'un tel véhicule dans le domaine du vol hypersonique », explique Olivier Dessornes, directeur adjoint du DPME (département multi-physique pour l'énergétique) à l'ONERA. Il existe « une très grande expertise française » en la matière, « qui a commencé à l'ONERA et s'est poursuivie en collaboration avec Aérospatiale puis MBDA, sous l'égide de la DGA » insiste Laurent Serre, directeur de programme dissuasion à l'ONERA. L'essai en vol devrait être réalisé d'ici fin 2021, depuis la côte Est des Etats-Unis. Le véhicule sera accéléré et mis en poste et à l'altitude voulue pour une fusée-sonde. Les données seront récoltées avant que le véhicule ne fonde et que ses restes ne soient perdus en mer. Air & Cosmos du 23 juillet

  • First trans-Atlantic drone flight is set to leave from North Dakota

    11 juillet 2018 | International, Aérospatial, C4ISR

    First trans-Atlantic drone flight is set to leave from North Dakota

    By: The Associated Press   GRAND FORKS, N.D. — Officials say the first trans-Atlantic flight by a medium-altitude, long-endurance unmanned aircraft is set to take off from an aviation park in North Dakota. The General Atomics Aeronautical Systems Inc. drone is scheduled to leave from the Grand Sky park at the Grand Forks Air Force Base Tuesday afternoon. The flight will cover more than 3,000 miles before landing in Gloucestershire, England, where the Royal Air Force is holding its centennial celebration. The aircraft is an MQ-9B, which is 38 feet long with a wingspan of 79 feet. The plane recently flew continuously for more than 48 hours. General Atomics spokeswoman Melissa Haynes says the flight is meant demonstrate the technology that allows the plane to fly alongside private and commercial aircraft. https://www.defensenews.com/air/2018/07/10/first-trans-atlantic-drone-flight-is-set-to-leave-from-north-dakota/

Toutes les nouvelles