SBIR-STTR Award

Eunomia- a Process and Toolset to Implement Big Code Approaches for Vulnerability Detection
Award last edited on: 10/12/2017

Sponsored Program
SBIR
Awarding Agency
DOD : DARPA
Total Award Amount
$149,968
Award Phase
1
Solicitation Topic Code
SB161-004
Principal Investigator
Leigh Flagg

Company Information

Sentar Inc

315 Winn Drive Suite 1
Huntsville, AL 35805
   (256) 430-0860
   info@sentar.com
   www.sentar.com
Location: Single
Congr. District: 05
County: Madison

Phase I

Contract Number: ----------
Start Date: ----    Completed: ----
Phase I year
2016
Phase I Amount
$149,968
While the movement to standardize engineering processes into the development of computing systems has been incrementally successful, the defect density of software systems continues to rise. A revolution in synthesizing systems is called for, and was answered by DARPAs Mining and Understanding Software Enclaves (MUSE) program, but how do we know these synthesized systems are verifiably non-exploitable Currently, there are several methods and associated tools available to identify vulnerabilities and malware in code bases. Many of these techniques can pinpoint possible threats, or match exact patterns of known threats. They also produce complex, voluminous and/or false positive results. The objective of this proposal is to demonstrate the feasibility of applying Big Code, i.e. machine learning and statistical analysis approaches aimed at mining software code bases, to develop a unified vulnerability and malware identification process and toolset which we call Eunomia. Eunomia will support the rapid synthesis of complex Systems of Systems (SoS) by providing quantifiable assurances that their components are maximally correct and non-exploitable.

Phase II

Contract Number: ----------
Start Date: ----    Completed: ----
Phase II year
----
Phase II Amount
----