Network Security
Network Security

In today’s society security of data is of primary importance to both industry and consumers alike. The need continues to grow for the development of resilient networks in the face of physical and cyber-attacks. CATT conducts broad research in the following areas:



Hardware for Secure Systems

Network Security

Software Security

Host Security

Multimedia Security



CATT has received more than $7 Million in external funding over the past several years, including a $1.6 Million dollar grant for a Cyber-crime initiative from the The New York State Foundation for Science, Technology and Innovation
(NYSTAR). Our research has led to the establishment of a NSA Center of Excellence for Information Assurance Education, and a joint NSF/NSA Cyber Corps Program.



Ongoing Projects
Title: Anti-Steganography System
Sponsor Name: IDZap LLC
Priniciple Investigator: Nasir Memon
Details: The objective of Phase 1 of this project is to develop the architecture of an anti-steganography system that much like a virus detector will be able to detect the presence of steganography in data entering and leaving a computer system.
In Phase 2 we will develop a commercial package for the detection of steganographyThe objective of Phase 1 of this project is to develop the architecture of an anti-steganography system that much like a virus detector will be able to detect the presence of steganography in data entering and leaving a computer system.
In Phase 2 we will develop a commercial package for the detection of steganography.
Title: Digital Evidence Reassembly
Sponsor Name: Digital Assembly, ATC-NY
Priniciple Investigator: Nasir Memon
Details: The problem of recovering deleted evidence from a variety of digital storage media arises routinely in digital forensics.
Researhers at Polytechnic have developed and patented a novel approach to reassembling fragmented digital evidence that does not rely on file table information but one that relies on the statistical properties of file contents themselves. The proposed approach can enhance disk analysis tools currently in use and make them robust againstf file table corruptions and certain anti-forensic tools.
The purpose of this project to develop a commercial tool for digital re-assembly in Incubator and in ATC-NT's Rome facility.

Title: Network Abuse Detection and Control System
Sponsor Name: TriNetra
Priniciple Investigator: Nasir Memon
Details: One of the growing problems faced by network administrators is the abuse of computing resources by authorized and unauthorized personnel. The nature of abuse may vary from using unauthorized applications to serving unauthorized content. Proliferation of peer-to-peer networks and wide use of tunnels makes it difficult to detect such abuses and easy to circumvent security policies. At Polytechnic we have developed system, called Nabs, which characterizes content types of network flows based solely on the payload which can then be used to identify abuses of computing resources. The proposed method does not depend on packet headers or other simple packet characteristics hence are more robust to circumvention. The purpose of this project is to develop a commercial grade version of the system.
Title: Study of Performance and Scalability of VoIP Security Systems
Sponsor Name: Verizon Labs
Priniciple Investigator: Henning Schulzrinne, Eillon Yardeni
Details: Study involves the programming of a SIP aware Application Layer Gateway also known as dynamic pinhole filtering, using a highly parallel network interface processor and the development of a large scale test environment to verify its performance and scalability at carrier class rates
Title: Secure VOIP Network
Sponsor Name: Integrated Telecommunication Service
Priniciple Investigator: Shivendra Panwar, Thanasis Korakis
Details: An international VOIP voice and data network with secure data transfer. Develop a demonstration system. This involves integration of open source software and proprietary secure services.
Title: Healthcare Location Tacking @ Kings County Hospital
Sponsor Name: Mobile Matrix, Inc.
Priniciple Investigator: Shivendra Panwar
Details: A technology pilot program to utilize existing Kings County Hospital wireless network infrastructure to deploy, integrate and evaluate Mobile Matrix's product in a real world environment.
Title: Better Mutual Authentication Follow on prospectus
Sponsor Name: Financial Services Technology Consortium (FSTC)
Priniciple Investigator: Steven M. Bellovin
Details: Evaluate technologies to permit financial institutions to authenticate themselves to consumers, to prevent “phishing” attacks.
Title: Digital Camera Source Identification
Sponsor Name: Worth 1000, LLC
Priniciple Investigator: Nasir Memon
Details: To develop a program that will assist in discovery and recording of unique signatures in digital cameras, based on unique natural defects in digital camera imaging sensors.
Title: Safe Browsing Through Web-based Application Communities
Sponsor Name: Google, Inc.
Priniciple Investigator: Angelos Keromytis
Details: Application Communities is a new paradigm for protecting software systems. Community members running independent instances of the same application will continuously exchange information that allows them to collectively identify new faults and attacks (collaborative monitoring), and to automatically develop, test and apply fixes (heal).
Title: Document Flows and Social Networks
Sponsor Name: Symantec Corp
Priniciple Investigator: Sal Stolfo
Details: The goal of the research is to develop systems that explain the dynamic behavior of users within organizations, identify potential insider threats, and detect security policy violations such as the malicious exfiltration of sensitive information. The project involves the study and analysis of documents and their derivative versions flowing throughout an organization; software systems under development for mining patterns and modeling behavior in email flows will be extended in particular to perform profiling analytics for documents exchanged between users within a large scale organization.
Title: Decoys for Spyware
Sponsor Name: Symantec Corp
Priniciple Investigator: Angelos Keromytis
Details: Stealthy insertion of malware has become a significant security concern. This project will investigate the use of active deception techniques for detecting the presence of spyware such as keyloggers or network sniffers, and for tracking attacks that use insider information. The award initiates research in the NSL lab that has also been proposed to other agencies for joint support with Symantec.
Title: Virtualization Mechanisms for Security
Sponsor Name: Stottler Henke Associates, Inc.
Priniciple Investigator: Jason Nieh
Details: We propose to develop display and operating system virtualization mechanisms for improving system security. Display virtualization mechanisms will be developed to enable stateless clients to effectively access applications and data delivered via a secure service provider.
Title: VoIP Peering
Sponsor Name: FiberNet Telecom Group
Priniciple Investigator: Henning Schulzrinne
Details: The project investigartes aspect of peering between VoIP providers, allowing competing VoIP service providers to exchange calls without the PSTN. We are investigating performance and protocol issues, including the performance of DNS servers to answer ENUM queries, SIP enhancements for provider privacy and the scalability of TLS for signaling.