Computer-science teams at SRI--a private research lab in Menlo Park, Calif.--have been working on two key projects to bring greater reliability to computer security. The Chats (Composable High-Assurance Trustworthy Systems) project aims to build security into an open-source operating system, using Berkeley Unix. "Today's operating systems and applications aren't built with security in mind," Neumann says. "Developers are building castles in the sand, and the next big wave is going wipe everything out."
SRI is also working on an advanced intrusion-detection system called the Emerald project. Emerald is a "forward-reasoning" expert system that can identify behaviors such as destruction, theft, manipulation, or random browsing of data; installation of malicious applications or back doors; or corruption of access rights. Emerald is one component of a broader suite of software under development at SRI for Darpa's information-assurance and cyberdefense programs.
How long until Emerald is ready for business use? It's still an active research project, but trial code is available for use from SRI's Web site.
Stay connected and informed by visiting the CA Solutions Center Community!

Become a member today for instant access to free InformationWeek research, expert advice, peer perspectives, and more on the following topics:
- Application Performance Management (APM)
- Security Management
- Mainframe 2.0
- IT Automation
- Service Assurance
Also, visit our Government and Financial Services groups to see how these technologies apply specifically to those industries.
NOTE: Offer valid for U.S., U.S. possessions, & Canada only.