0
Unikernel technologies, specifically the libraries, are applicable in many
ways (e.g. the recent Docker for Mac and Windows products). However,
unikernels themselves can enable new categories of products. One of the most
prominent products is a network security tool called CyberChaff, based on open
source HaLVM unikernels. Today Formaltech, a Galois subsidiary, revealed
that Reed College is one of their happy CyberChaff users!
Defending a Network With CyberChaff
CyberChaff is designed to detect one of the early and critical steps in a
security breach: the point when an attacker pivots from their initial entry
point to the more juicy parts of the network. This step, the pivot, typically
involves scanning the network for hosts that may be better positioned, appear
to have more privileges, or are running critical services.
To impair this step of the attack, CyberChaff introduces hundreds (or
thousands) of false, lightweight nodes on the network. These hosts are
indistinguishable from real hosts when scanned by the attacker, and are each
implemented as their own HaLVM unikernel. See the diagram below where green
nodes are the real hosts and the orange nodes are HaLVM CyberChaff nodes. This
means that an attacker is faced with a huge Continue reading