Endeavor Systems — Department of Homeland Security SBIR Phase II: Today's static IT systems allow adversaries time to plan and launch attacks. Endeavor prop

Endeavor Systems — SBIR Phase II award from Department of Homeland Security.

Amount
$99,995
Agency
Department of Homeland Security
Program / Phase
SBIR · Phase II
Solicitation
FY14-CRPP
NAICS
Place of performance
VA
Period
2014-09-20 → 2015-10-05

Description

Today's static IT systems allow adversaries time to plan and launch attacks. Endeavor proposes a Multi-layer, Ever changing, Self-defense Service (MESS) that is resilient and manageable. MESS prevents attackers from exploiting a target system by removing the static network & system attributes that simplify reconnaissance. Continuously refreshing the target system to a new virtual instance with a known trusted state and random service attributes, this limited-time-use virtual instance is comprised of a single application and OS combination and reduces system complexity. During Phase II, Endeavor will develop an application that will build on our successful Phase I MESS prototype. This application focuses on protecting web services, including web content delivery. Today, web security products detect and block attacks by enforcing acceptable use policies, and analyzing web traffic, content, etc. Powered by MESS allows multi-layer protections by deploying public interface obfuscation and live service migration technique. It conceals the public interface from adversaries and enables web services to self-defend and self-recover. application is a game-changing cyber defense system, not by detecting, but by concealing; not by blocking, but by cleaning. By Phase II completion, application will handle high traffic volume and multiple simultaneous connections, and be ready for the pilot/field test. Endeavor will work with clients and partners like DHS, Air Force, and McAfee to outline a pilot/field test plan. We'll develop a market plan for SaaS providers who can benefit directly from application as they have large attack surfaces and extensive virtualized infrastructure.