Code Monkey home page Code Monkey logo

socinabox's Introduction

TARP Advanced IDS/IPS System

Traffic Analysis and Response Platform

Our response to MD5's mission to...

Prepare

TARP utilizes open-source data about existing risks in addition to our analysis of new ones to be prepared for both known and unknown threats.

Detect

Our system uses a hybrid of static analysis and machine learning algorithms in order to keep a constantly updated watch over the data traversing into and out of the network.

Respond

Based on data received from our analysis platform, TARP will implement intelligent firewall rules in-between the system and the external web. It will also notify the user when anomalies are detected, allowing enterprise users to diagnose and resolve the problem using their own personnel and resources.

System Summary

TARP is a holistic incident detection and response platform for mission-critical IoT and ICS systems.

What makes TARP different

  • IoT focused: TARP specifically targets IoT devices, meaning that operations for standard servers and workstations will not be impacted by the integration of TARP into a home or enterprise network.
  • Expandable: TARP can grow and shrink to fit any size network.
  • Continuous: A disruption in TARP does not mean a disruption in service. IoT devices can utilize normal endpoints in the event of system failure.
  • Hybrid analysis: Dozens of commercially available IDS/IPS systems already use machine learning for malware analysis. TARP still utilizes the latest groundbreaking achievements in machine learning, but diverges from the norm by also integrating static analysis of packet contents. This hardens our IoT networks against a variety of common threats and attacks.
  • Trusted sources: Our static analysis incorporates malicious address data from institutions such as Google and SANS.
  • GeoIP integration: TARP dynamically determines the country of origin for each device based on hardware data, allowing us to determine regions of the world we could normally expect devices to be contacting for updates, etc.
  • TARP uses no third-party servers or hardware, meaning that it can be brought into a classified environment on classified systems.
  • Cheap: The current iteration of TARP is cheap. Very cheap.

Future Goals

  • By introducing a honeynet into our IoT security solution, organizations can observe attacker behavior while maintaining their network's security by quarantining bad actors.

Developers

  • Spencer Hanson
  • Nicholas Zimmerer
  • Ryan Craig
  • Jonathan Meade

socinabox's People

Contributors

meadej avatar nzimm avatar rcraig14 avatar

Stargazers

Bart Black  avatar 0xfouda avatar

Watchers

R Vaughan avatar  avatar  avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.