Feeds

Elite DARPA cyber heroes will protect interwebs

'We invented it, we'll save it'

Protecting against web application threats using SSL

DARPA is upping its cyber game in order to protect the internet it came up with, increasing its research budget from $120m (£74.6m) to $188m (£117m) for the fiscal year 2012.

“DARPA’s role in the creation of the internet means we were party to the intense opportunities it created and share in the intense responsibility of protecting it. Our responsibility is to acknowledge and prepare to protect the Nation in this new environment,” Regina E Dugan, DARPA director, said in a canned statement.

“We need more and better options. We will not prevail by throwing bodies or buildings at the challenges of cyberspace. Our assessment argues that we are capability limited, both offensively and defensively. We need to fix that.”

Dugan was speaking at DARPA's Colloquium on Future Directions in Cyber Security, where the agency also announced an elite cyber team of experts to combat online threats. The cyber-defence crack team come from the white hat hacker community, academia, labs and non-profits, major companies, and of course, the defence and intelligence communities.

“I should emphasise that national policymakers, not DARPA, will determine how cyber capabilities will be employed to protect and defend the national security interests of the United States," Dugan said. "But the Agency has a special responsibility to explore the outer bounds of such capabilities so that our Nation is well prepared for future challenges.”

According to DARPA's Cyber Analytic Framework – a detailed investigation into the current state of US cybersecurity – the current strategy isn't going to work out in the long term.

Over the last 20 years, information security software packages have grown from thousands of lines of code to nearly 10 million lines, while malicious software tends to be around 125 lines. This strategy needs to continue for the moment because it gives the country "tactical breathing space".

"But if we continue only down the current path, we will not converge with the threat," Dugan said. ®

Reducing the cost and complexity of web vulnerability management

More from The Register

next story
Spies would need SUPER POWERS to tap undersea cables
Why mess with armoured 10kV cables when land-based, and legal, snoop tools are easier?
Early result from Scots indyref vote? NAW, Jimmy - it's a SCAM
Anyone claiming to know before tomorrow is telling porkies
TOR users become FBI's No.1 hacking target after legal power grab
Be afeared, me hearties, these scoundrels be spying our signals
Jihadi terrorists DIDN'T encrypt their comms 'cos of Snowden leaks
Intel bods' analysis concludes 'no significant change' after whistle was blown
Home Depot: 56 million bank cards pwned by malware in our tills
That's about 50 per cent bigger than the Target tills mega-hack
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
China hacked US Army transport orgs TWENTY TIMES in ONE YEAR
FBI et al knew of nine hacks - but didn't tell TRANSCOM
Microsoft to patch ASP.NET mess even if you don't
We know what's good for you, because we made the mess says Redmond
NORKS ban Wi-Fi and satellite internet at embassies
Crackdown on tardy diplomatic sysadmins providing accidental unfiltered internet access
prev story

Whitepapers

Secure remote control for conventional and virtual desktops
Balancing user privacy and privileged access, in accordance with compliance frameworks and legislation. Evaluating any potential remote control choice.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
Intelligent flash storage arrays
Tegile Intelligent Storage Arrays with IntelliFlash helps IT boost storage utilization and effciency while delivering unmatched storage savings and performance.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Beginner's guide to SSL certificates
De-mystify the technology involved and give you the information you need to make the best decision when considering your online security options.