making headlines

reCAPTCHA (a.k.a. Those Infernal Squiggly Words) Almost Done Digitizing the New York Times Archive - November 13, 2009
At some 40 million deciphered words a day, and approximately 100,000 words per book, that means Luis Von Ahn's reCAPTCHA army could in theory chew through hundreds of thousands of books per year.

State Department Deploys Anti-Phishing 'Phil' Game Training - October 28, 2009
CyLab Start-up Wombat's Anti-Phishing Phil shown to be effective at training people to recognize phishing attacks.

Online Data Present A Privacy Minefield - October 26, 2009
Alessandro Acquisti studies privacy through the lens of behavioral economics. He's interested in how people "spend" their personal information when they don't really know where it's going.

Red Pill? Blue Pill? Ruminations on the Intersection of Inner Space and Cyber Space - October 23, 2009
Richard Power looks beyond fear, doubt, and "broken" to cybersecurity's real connection to the evolving world.

APWG teams with CUPS to roll out real-time counter-eCrime education system - October 19, 2009
The Anti-Phishing Working Group (APWG) and CyLab Usable Privacy and Security Laboratory (CUPS) will announce tomorrow the deployment of their real-time counter-eCrime education system.

[see all the headlines]

dividing line

Recent CyLab Chronicles

Q&A with Collin Jackson

Q&A with Patrick Tague

Q&A with Jonathan McCune

Q&A with Dena Haritos Tsamitis

Q&A with Anupam Datta

[see all cylab chronicles]

 

Inventions and patents

Inventions: System Security

Pioneer: Protecting Legacy Systems
Verifies integrity and guarantees execution of code on legacy platforms; detects malicious software; operates from a secure environment outside legacy system

SWATT (Software-based Attestation of Embedded Devices): Secure Devices
Detects and analyzes software threats on PCs, PDAs, cell phones and sensor nodes; operates from a secure environment outside the device; easily perform quality assurance audits

Automatic Eye-Level System for Robust Face / Iris Recognition: Biometrics
Long-range and short range recognition systems for security and surveillance at critical locations

MiB (Message in a Bottle): Cryptography
Creates key setups for sensor networks; current security protocols assume that sensor network nodes share cryptographic keys with base stations; reduces burden of setting up initial cryptographic keys. (Patent pending)

SQUARE (System Quality Requirements Engineering Process): Design Phase Evaluation
Analyzes security requirements for software-intensive systems in design phase, allowing evaluation before implementations; validated in case studies with CyLab partners; industry recognized process included in DHS website, Build Security In.

reCAPTCHA: Optical Character Recognition (OPR)
CAPTCHA programs generate tests that humans pass and computers fail. The reCAPTCHA project is a free Internet-based service, available to any website that prevents automated abuse of online services while helping to digitize books. As of June 2008, over 45,000 web sites have signed up for this service, resulting in 1.1 billion words digitized from books by over 750 million (unique) people.

Inventions: Security and Surveillance

Grey Technology Smartphone-based Universal Access

Human Feature Hiding in 3D Surface Scan Data

Location Based Unattended Baggage Detection

Multiple Vehicle Multiple Access Point Mobile Video Handover

Real-Time WiFi User Location Mapping System

Seeing-Is-Believing: Using Camera Phones for Human-Verifiable Authentications

Inventions: Network and Software Security

BIND: A Time-Use Attestation Service for Secure Distributed Systems

Human-Verifiable Code Execution

MEAD: Real-time Fault Tolerant Middleware Infrastructure

Midas: Nondeterminism Compensation for Fault-Tolerant Distributed Applications

Minisec: A Secure Network Layer Protocol for Sensor Networks (currently used in Bosch Products)

Secure Sensor Network Routing: A Clean Slate Approach

TFLA (Transparent Failure Routing Algorithm

Vajira: Distributed Survivability Benchmarking

Inventions: Technology Improvements

Context-Based Multiple Resolution Video Compression

Eye Tracking-Based Network Data Flow Control

CyLab Patent Filings

Automatic Signature Generation Against Worm Attacks

Context-Aware Network Bandwidth Optimization

Multiple Vehicle Multiple Access Point Mobile Video Handover

Pioneer: Verifying Integrity and Guaranteeing Execution of Code on Legacy Platforms

SecVisor: a mechanism for OS code integrity protection

MiB (Message in a Bottle)