Network Immunization Real-Time Network Security Raymond R. Hoare, Assistant Professor Department of Electrical Engineering University of Pittsburgh (412)
Cyber Damage: $55 Billion in % of Damage Occurs within 6 Hours Half the Damage is Done Software Updates are to Slow
Viruses Compromise Our Computers $55 Billion in Damage in 2003
Network Immunization adds Protection Real-Time Protection and Detection
Searching using a Pentium / ARM Processor Searching using a Content Addressable Memory ns for 10k words 20, ,000 ns for 10k words Key Technology: HW Search Memory Network Immunization Real Time Performance Existing Solutions are Softwre Based Poor Peformance
IDS Performance Declines as the Number of Rules Increases Existing Solutions Peak Rate over 100Mb/s Ethernet Gb/s Expected Performance for Network Immunization
Network Immunization Dr. Raymond R. Hoare, EE Dept., U. Pittsburgh, Cost of Computer Crimes > $400 Billion/yr 50% of damage in first 6hrs Infected computers infect the entire network Firewalls are insufficient Network Immunization augments switches and routers Network Immunization augments switches and routers Adds intrusion detection and prevention hardware Adds intrusion detection and prevention hardware Infections are stopped Infections are stopped