Skip to main content

These researchers are modifying CPUs to detect security threats

Image used with permission by copyright holder
A group of researchers has won a grant to research and develop a modified CPU that can help detect malware and other security anomalies.

The two collaborating teams, at Binghamton University and the University of California-Riverside, believe that a hardware solution is necessary to help mitigate security threats instead of relying entirely on software. The project has been dubbed the “Practical Hardware-Assisted Always-On Malware Detection” and the three-year grant of $275,000 was awarded by the National Science Foundation.

Typically we rely on anti-virus or anti-malware software to scan and detect threats on our computers. The researchers say that they will investigate ways of modifying a computer’s central processing unit that will involve adding “logic” to spot anomalies while running programs. They envision the hardware solution as a “lookout,” which will complement the work of software.

“This project holds the promise of significantly impacting an area of critical national need to help secure systems against the expanding threats of malware,” explained Dmitry Ponomarev, professor of computer science at Binghamton University, the project’s principal investigator.

“The modified microprocessor will have the ability to detect malware as programs execute by analyzing the execution statistics over a window of execution,” he added. The researchers admit that no solution they develop will work 100 percent of the time but it is rather intended as an extra layer of defense.

When the hardware component, which will be powered by machine learning, triggers a threat it will alert a “heavyweight software detector” to carry out further analysis and take action.

“The hardware guides the operation of the software; without the hardware the software will be too slow to work on all programs all the time,” said Ponomarev.

“The hardware detector’s role is to find suspicious behavior and better direct the efforts of the software.”

Recently the researchers publicly disclosed a serious hardware security vulnerability that allowed them to disable the Address Space Layout Randomization (ASLR) component of an operating system. ASLR randomizes where data is stored on a computer. By disabling this function, a hacker could gain root access to a system and take full control of the computer.

The research was carried out on a Linux system with Intel processors but they claimed that the attack is possible on Windows, Android, and virtualization systems like KVM as well.

Editors' Recommendations

Jonathan Keane
Former Digital Trends Contributor
Jonathan is a freelance technology journalist living in Dublin, Ireland. He's previously written for publications and sites…
How to do hanging indent on Google Docs
Google Docs in Firefox on a MacBook.

The hanging indent is a classic staple of word processing software. One such platform is Google Docs, which is completely free to start using. Google Docs is packed with all kinds of features and settings, to the point where some of its more basic capabilities are overlooked. Sure, there are plenty of interface elements you may never use, but something as useful as the hanging indent option should receive some kind of limelight.

Read more
How to disable VBS in Windows 11 to improve gaming
Highlighting VBS is disabled in Windows 11.

Windows 11's Virtualization Based Security features have been shown to have some impact on gaming performance — even if it isn't drastic. While you will be putting your system more at risk, if you're looking to min-max your gaming PC's performance, you can always disable it. Just follow the steps below to disable VBS in a few quick clicks.

Plus, later in this guide, we discuss if disabling VBS is really worth it, what you'd be losing if you choose to disable it, and other options for boosting your PCs gaming performance that don't necessarily involve messing with VBS.

Read more
How to do a hanging indent in Microsoft Word
A person typing on a keyboard, connected to a Pixel Tablet.

Microsoft Word is one of the most feature-rich word processing tools gifted to us human beings. In fact, the very word “Word” has invaded nomenclature to the point where any discussion of this type of software, regardless of what the product is actually called, typically results in at least one person calling the software “Word.”

Read more