Raytheon chosen by DARPA for cybersecurity programme
Raytheon Company has been selected to support an insider threat research programme led by the Defense Advanced Research Projects Agency (DARPA).
The goal of the DARPA Anomaly Detection at Multiple Scales (ADAMS) programme is to create, adapt and apply technology to the problem of anomaly characterization and detection in large data sets.
In order to build algorithms to better detect anomalous behaviors, the ADAMS project will use data collected by Raytheon's endpoint audit and investigation solution known as SureView(TM). The specific goal of ADAMS researchers is to detect anomalous behaviors shortly after a trusted insider "turns" and begins committing malicious acts. Unlike previous insider threat research programmes that were limited in size and scope, ADAMS will leverage massive data sets from large computer end-user populations observed in live, operational environments. DARPA has stated it wants the technology developed by ADAMS researchers to bolster the capabilities of existing sensor suites currently employed by cybersecurity analysts and operators.
"This project will provide unprecedented understanding of the insider threat at a time when the US government is mandating that agencies implement automated insider threat detection capabilities to protect their classified information systems," said Steve Hawkins, vice president of Raytheon's Intelligence and Information Systems' Information Security Solutions business. "The ADAMS programme will ensure that operationally proven tools such as SureView can be further enhanced to keep pace with the ever-evolving nature of the insider threat and allow analysts to better identify precursor behaviors before damaging incidents occur."
SureView captures malicious activity by proactively auditing end-user behavior on computer endpoints for policy violations and high-risk activity, such as accessing classified or proprietary data and trying to send it outside the firewall. Whether an incident is accidental or deliberate, SureView provides customers visibility and context to discern benign and malicious behavior all while adhering to an organization's privacy policies.
SureView agents are able to collect data associated with a multitude of applications, processes and behaviors, including Web browsing, removable media, MS Office applications, file activity, email, MS Windows registry, peer-to-peer applications, log on/log off activity, keystroke logging and clipboard functions, use of printers, use of Windows terminal services, instant messaging, command line operations and use of encryption.
Source: Raytheon
More from Digital Battlespace
-
AUSA 2025: Persistent Systems to complete its largest order by year’s end
Persistent Systems received its largest ever single order for its MPU5 devices and other systems earlier this month and has already delivered the 50 units to the US Army’s 4th Infantry Division.
-
Aselsan brings in dozens of companies and systems under the Steel Dome umbrella
Turkey has joined the family of countries attempting to establish a multilayered air defence system with government approval in August 2024 for the effort landed by Aselsan. Dubbed Steel Dome, the programme joins Israel’s Iron Dome, the US Golden Dome, India’s Mission Sudarshan Chakra and South Korea’s low-altitude missile defence system.
-
DSEI 2025: MARSS unveils new agnostic multidomain C4 system
MARSS’ NiDAR system has been deployed using sensors from static platforms to provide detection and protection for static sights, such as critical infrastructure, ports and military bases.
-
Australia looks towards space with force restructure, investment and training
Australia is looking to improve its presence in space with a focus on communications and creating a dedicated segment of its defence forces committed to the domain.
-
EID to unveil new vehicle communication system at DSEI
The Portuguese company’s naval communications system is in service across more than a dozen countries. It has turned to its home nation for support in developing a new vehicle based C2 system.
-
Chess Dynamics successfully demonstrates Vision4ce AI-driven tracker
The Vision4ce Deep Embedded Feature Tracking (DEFT) technology software is designed to process video and images by blending traditional computer vision with artificial intelligence (AI) algorithms to present actionable information from complex environments.