SBIR-STTR Award

Improving Software and Data Security in Industrial Control Systems
Award last edited on: 3/28/2019

Sponsored Program
STTR
Awarding Agency
DOD : OSD
Total Award Amount
$849,938
Award Phase
2
Solicitation Topic Code
OSD09-T003
Principal Investigator
Ryan O'neill

Company Information

Pikewerks Corporation

105 A Church Street
Madison, AL 35758
   (703) 969-6404
   info@pikewerks.com
   www.pikewerks.com

Research Institution

----------

Phase I

Contract Number: ----------
Start Date: ----    Completed: ----
Phase I year
2010
Phase I Amount
$99,965
Industrial Control Systems (ICS) are critical elements in electrical, water, oil/gas, and manufacturing services involving supervisory control and data acquisition (SCADA), distributed control systems (DCS), and programmable logic controllers (PLCs). These systems allow operators to monitor sensor data and remotely control field devices. Initially, these devices were designed for closed-network or non-networked environments inside of physically secure facilities. These early systems did not take into account cyber threats such as viruses, worms, Trojans, and system exploitations from buffer overflows, logic errors, network protocols, and denial of service (DOS) attacks. However, ICS have evolved into highly technical distributed systems directly and indirectly connected to the Internet where they are exposed to cyber attacks. Pikewerks proposes to research and develop a system for protecting the software executing on these systems without requiring any changes to the source code.

Keywords:
Industrial Control Systems, Scada, Distributed Control Systems, Software Protection, Reverse Engineering, Anti-Tamper

Phase II

Contract Number: ----------
Start Date: ----    Completed: ----
Phase II year
2011
Phase II Amount
$749,973
Pikewerks' Protection for Industrial and Environmental Controls from Exploitation, or PIECE, will be a cross-platform suite of capabilities providing anti-exploitation and anti-reconnaissance for Industrial Control Systems. PIECE will provide a suite of capabilities for Windows, Linux, VxWorks, and legacy devices that ensure survivability of critical infrastructure equipment. Anti-exploitation will be provided through the prevention of a variety of techniques commonly used by malware and rootkits. Further, PIECE will provide kernel and network protections to ensure secure communications across distributed heterogeneous networks.

Keywords:
High-Availability, Network Resilience, Network Survivability, Anti-Exploitation, Scada, Ics, Legacy