RSS feed source: National Science Foundation

Synopsis

NSF is committed to securing the nation’s research enterprise as part of its core mission. The Research on Research Security (RoRS) program will advance the understanding of the full scope, potential, challenges, and nature of the research on research security field through scholarly evidence.

Background

The following activities provide background and context for developing proposals to submit to the RoRS program.

Program Description

Collectively, the research that RoRS funds will foster a broad community that builds collaborations between the STEM research community, research security researchers, and research security practitioners. Interdisciplinary approaches are encouraged, and proposers should address how they will leverage the range of expertise, theories, and methods of the team to engage in evidence-based research on research security. Proposers are encouraged to identify collaborators across a wide range of sectors, and to consider projects in collaboration with international partners that share U.S.

Click this link to continue reading the article on the source website.

RSS feed source: National Science Foundation

Executive summary

Many networks have a gap in their defenses for detecting and blocking a malicious technique known as “fast flux.” This technique poses a significant threat to national security, enabling malicious cyber actors to consistently evade detection. Malicious cyber actors, including cybercriminals and nation-state actors, use fast flux to obfuscate the locations of malicious servers by rapidly changing Domain Name System (DNS) records. Additionally, they can create resilient, highly available command and control (C2) infrastructure, concealing their subsequent malicious operations. This resilient and fast changing infrastructure makes tracking and blocking malicious activities that use fast flux more difficult. 

The National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC), Canadian Centre for Cyber Security (CCCS), and New Zealand National Cyber Security Centre (NCSC-NZ) are releasing this joint cybersecurity advisory (CSA) to warn organizations, Internet service providers (ISPs), and cybersecurity service providers of the ongoing threat of fast flux enabled malicious activities as a defensive gap in many networks. This advisory is meant to encourage service providers, especially Protective DNS (PDNS) providers, to help mitigate this threat by taking proactive steps to develop accurate, reliable, and timely fast flux detection analytics and blocking capabilities for their customers. This CSA also provides guidance on detecting and mitigating elements of

Click this link to continue reading the article on the source website.