Skip to main content

These researchers are modifying CPUs to detect security threats

A group of researchers has won a grant to research and develop a modified CPU that can help detect malware and other security anomalies.

The two collaborating teams, at Binghamton University and the University of California-Riverside, believe that a hardware solution is necessary to help mitigate security threats instead of relying entirely on software. The project has been dubbed the “Practical Hardware-Assisted Always-On Malware Detection” and the three-year grant of $275,000 was awarded by the National Science Foundation.

Recommended Videos

Typically we rely on anti-virus or anti-malware software to scan and detect threats on our computers. The researchers say that they will investigate ways of modifying a computer’s central processing unit that will involve adding “logic” to spot anomalies while running programs. They envision the hardware solution as a “lookout,” which will complement the work of software.

“This project holds the promise of significantly impacting an area of critical national need to help secure systems against the expanding threats of malware,” explained Dmitry Ponomarev, professor of computer science at Binghamton University, the project’s principal investigator.

“The modified microprocessor will have the ability to detect malware as programs execute by analyzing the execution statistics over a window of execution,” he added. The researchers admit that no solution they develop will work 100 percent of the time but it is rather intended as an extra layer of defense.

When the hardware component, which will be powered by machine learning, triggers a threat it will alert a “heavyweight software detector” to carry out further analysis and take action.

“The hardware guides the operation of the software; without the hardware the software will be too slow to work on all programs all the time,” said Ponomarev.

“The hardware detector’s role is to find suspicious behavior and better direct the efforts of the software.”

Recently the researchers publicly disclosed a serious hardware security vulnerability that allowed them to disable the Address Space Layout Randomization (ASLR) component of an operating system. ASLR randomizes where data is stored on a computer. By disabling this function, a hacker could gain root access to a system and take full control of the computer.

The research was carried out on a Linux system with Intel processors but they claimed that the attack is possible on Windows, Android, and virtualization systems like KVM as well.

Jonathan Keane
Former Digital Trends Contributor
Jonathan is a freelance technology journalist living in Dublin, Ireland. He's previously written for publications and sites…
Severance fans, this Lumon Terminal style MDR Dasher Keyboard could soon be yours
MDR Dasher Keyboard

All outies take note, you could soon be using the very same Lumon keyboard as your innie, thanks to the MDR Dasher Keyboard.

If that sentence made no sense to you then you've likely not seen Severance, the Apple TV+ show, and probably won't want one of these keyboards.

Read more
Buy this Samsung OLED ultrawide gaming monitor while it’s under $1,000
Kena Bridge of Spirits on the Samsung Odyssey OLED G9.

The Samsung Odyssey OLED G9 gaming monitor is the perfect partner for a powerful upgrade from gaming PC deals, but it's pretty expensive at its original price of $1,300. If you're interested in this fantastic screen, you won't want to miss this chance to get it for less than $1,000 from Samsung, which is selling the gaming monitor with a $350 discount that pulls its price down to $950. We're not sure how much time is remaining before this offer expires though, so you'll have to hurry to make sure you pocket the savings.

Why you should buy the Samsung Odyssey OLED G9 gaming monitor

Read more
Get the Dell Inspiron 16 Plus laptop with 16GB of RAM for only $600
Dell Inspiron 16 Plus front angled view showing display and keyboard.

Dell is an excellent source of laptop deals for both premium machines and budget-friendly devices. If you're leaning toward the latter for your next purchase, you should consider the Dell Inspiron 16 Plus. From an original price of $1,000, it will be yours for a more affordable $600 if you purchase it right now. The stocks that are part of this clearance sale may run out at any moment, so if you want to take advantage of the $400 discount, you're going to have to push through with your transaction for this laptop immediately.

Why you should buy the Dell Inspiron 16 Plus laptop

Read more