Follow Us

'Hyperspeed signalling' could prevent cyber attacks, claim researchers

A new system of splitting network traffic could provide advance warning of cyber attacks

Security engineers at the University of Tulsa have found a way to identify cyber attacks before they reach their target, enabling network administrators to take pre-emptive measures to protect their IT systems.

In a report published in the International Journal of Critical Infrastructure Protection, the engineers explained that slowing traffic by just a few milliseconds can give networks time to identify malicious data packets. The team have developed an algorithm that sends high-speed signals flying ahead of the malware to mobilise defences.

“Hyperspeed signalling uses optimal (hyperspeed) paths to transmit high priority traffic while other traffic is sent along suboptimal (slower) paths,” stated the report. “Slowing the traffic ever so slightly enables the faster command and control messages to implement sophisticated network defence mechanisms.”

One of the report's authors, Sujeet Shenoi, admitted to New Scientist magazine that adapting an existing network to run the algorithm would not be cheap. Investment in caching technology and new defence mechanisms would be required, and reserving a data pathway for the use of hyper-speed command and control signals could be seen as a waste of capacity.

Furthermore, the system is only as good as the threat sensors that pick up the impending attack. Most security systems can only detect threats from previously encountered malware, so unknown variants could still slip through the net, said Shenoi.

However, the report points to a new software program developed by computer scientists at Dartmouth College in New Hampshire and the University of Calgary in Canada, that allows infrastructure to effectively monitor itself.

The intrusion detection mechanism operates from within the kernel and detects changes in the sequence of code, allowing the infrastructure to identify potentially malicious programs. “We can also verify the operating system code to see if it has been modified by malware,” said Dartmouth's Jason Reeves.

The software, known as Autoscopy, is currently set up for power-grid-embedded computers, but could feasibly be used alongside the Tulsa team's hyperspeed algorithm, according toNew Scientist.




Comments



Send to a friend

Email this article to a friend or colleague:

PLEASE NOTE: Your name is used only to let the recipient know who sent the story, and in case of transmission error. Both your name and the recipient's name and address will not be used for any other purpose.

Techworld White Papers

Choose – and Choose Wisely – the Right MSP for Your SMB

End users need a technology partner that provides transparency, enables productivity, delivers...

Download Whitepaper

10 Effective Habits of Indispensable IT Departments

It’s no secret that responsibilities are growing while budgets continue to shrink. Download this...

Download Whitepaper

Optimise Performance For Global eCommerce

Global is all the rage: eBusiness teams are feverishly building new international initiatives in...

Download Whitepaper

Gartner Magic Quadrant for Enterprise Information Archiving

Enterprise information archiving is contributing to organisational needs for e-discovery and...

Download Whitepaper

Techworld UK - Technology - Business

Part 2 of your journey to virtualisation

You can still access part 2 of our virtualisation journey - explore how you can improve your servers, storage and networks by developing your infrastructure.

Watch now...
Techworld Mobile Site

Access Techworld's content on the move

Get the latest news, product reviews and downloads on your mobile device with Techworld's mobile site.

Find out more...

From Wow to How : Making mobile and cloud work for you

On demand Biztech Briefing - Learn how to effectively deliver mobile work styles and cloud services together.

Watch now...

Site Map

* *