Computer systems and networks are exposed to attacks on a daily basis. IT technicians and information security practitioners must deploy protection technologies that proactively guard against and minimize the impact of successful attacks. Worms, viruses and targeted surgical strikes by skilled attackers must be taken into account. In a large, complex IT environment where implementing new security solutions is expensive and time-consuming, it is helpful to be able to simulate and test different network configurations prior to making deployment decisions or major network changes. However, there are no tools available today for effectively measuring the security in simulated networks. Current simulation solutions are either focused on areas other than security, or lack sufficient complexity or flexibility.
CoreLabs has addressed this problem by designing two simulation solutions:
Insight is a solution for interactively simulating networks of computer systems and launching attacks against either known or hypothetical vulnerabilities. Our simulation solution is designed to enable IT managers to evaluate the security of different network configurations and test different scenarios. This system permits changes in configurations and therefore enables effectively the testing of various network infrastructures.
Our research focuses on the interactive simulation of realistic scenarios where the simulated machines have the same observable behavior as real machines. Users are able to modify configurations, reproduce attacks and access the log data, which is produced by the auditing tools.
ITeSu or Impact Test Suite
ITeSu is a technology that supports several victim virtual machines, for vulnerable OSs and applications, and can manage which VMs are on/off from a centralized API.
- New Algorithms for Attack Planning
- Authors: Carlos Sarraute
- In: FRHACK Conference, Besançon, France. September 7/8, 2009.
- Date published: 2009-09-07
- Simulating Cyber-Attacks for Fun and Profit
- Authors: Ariel Futoransky, Fernando Miranda, Jose Orlicki and Carlos Sarraute
- In: 2nd International Conference on Simulation Tools and Techniques (SIMUTools'09)
- Date published: 2009-03-02
- Advances in Automated Attack Planning
- Authors: Carlos Sarraute and Alejandro Weil
- In: PacSec Conference, Tokyo, Japan. November 12/13, 2008.
- Date published: 2008-11-12
- Your risk is not what it used to be
- Authors: Ariel Waissbein
- In: ToorCon X. September 26-28, 2008. San Diego, CA, USA.
- Date published: 2008-09
- Simulation of Computer Network Attacks (view)
- Authors: Carlos Sarraute, Fernando Miranda and Jose Orlicki
- In: Argentine Symposium on Computing Technology (AST) 2007 - 36 JAIIO
- Date published: 2007-08-30
- Virtualization in software development and QA
- Authors: Marcelo Picorelli
- In: VMworld `06
- Date published: 2006
- viewBuilding Computer Network Attacks
- Authors: Ariel Futoransky, Luciano Notarfrancesco, Gerardo Richarte and Carlos Sarraute
- In: CoreLabs Technical Report (arXiv:1006.1916)
- Date published: 2003-03-31