Advanced Anomaly Detection in Real-Time Deep Packet Inspection

Agency:
State: Idaho
Level of Government: Federal
Category:
Opps ID: NBD00159772672205601
Posted Date: Jan 8, 2024
Due Date: Jan 23, 2024
Source: Members Only
Follow
Advanced Anomaly Detection in Real-Time Deep Packet Inspection
Active
Contract Opportunity
Notice ID
Related Notice
Department/Ind. Agency
ENERGY, DEPARTMENT OF
Sub-tier
ENERGY, DEPARTMENT OF
Office
BATTELLE ENERGY ALLIANCE–DOE CNTR
General Information
  • Contract Opportunity Type: Special Notice (Original)
  • All Dates/Times are: (UTC-05:00) EASTERN STANDARD TIME, NEW YORK, USA
  • Original Published Date: Jan 08, 2024 05:28 pm EST
  • Original Response Date: Jan 23, 2024 05:30 pm EST
  • Inactive Policy: Manual
  • Original Inactive Date: Jan 23, 2024
  • Initiative:
    • None
Classification
  • Original Set Aside:
  • Product Service Code: 7G21 - IT AND TELECOM - NETWORK: DIGITAL NETWORK PRODUCTS (HARDWARE AND PERPETUAL LICENSE SOFTWARE)
  • NAICS Code:
    • 518210 - Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services
  • Place of Performance:
    Idaho Falls , ID 83415
    USA
Description

TECHNOLOGY LICENSING OPPORTUNITY

Advanced Anomaly Detection in Real-Time Deep Packet Inspection



A real-time deep packet inspection solution that empowers network security operators with a visual and human-readable approach to detect, analyze, and mitigate anomalous network packets.



Opportunity: Idaho National Laboratory (INL), managed and operated by Battelle Energy Alliance, LLC (BEA), offers the opportunity to explore a license and/or collaborative research agreement to commercialize this anomaly detection technology. This technology transfer opportunity is part of a dedicated effort to convert government-funded research into job opportunities, businesses, and, ultimately, an improved way of life for the American people.



Overview: In the escalating landscape of cyber threats, safeguarding network infrastructures is of paramount importance. The rise of IoT devices, especially within the realms of smart city initiatives and medical service providers, intensifies the need for more sophisticated security measures. Our novel solution addresses this critical need by offering a pioneering approach to detecting and analyzing anomalous network packets.



Description: Our technology presents a groundbreaking method for real-time deep packet inspection, with a unique focus on identifying anomalous network packets. This solution is based on a specialized autoencoder with an intrinsic clustering capability, presenting network packet contents visually according to their level of anomaly. The result is a human-readable, latent space representation, enabling the rapid identification of compromised devices or those under attack.



Key components of this process include:

• An autoencoder trained on "normal" packets representing typical benign network traffic, eliminating the need for data labeling or human oversight.

• The generation of a 3-D latent space representation for network packet payloads.

• Optimization of the latent space representation using K-means clustering, separating normal from anomalous packets visually.

• Upon completion of training, the autoencoder retains only the optimized encoder, providing a simplified yet effective method for dimensionality reduction.



Benefits:

• First-of-its-kind real-time deep packet inspection capability.

• A unique visual and human-readable approach to identifying anomalous packets.

• Capability to monitor thousands of devices simultaneously.

• Rapid identification of potential network security threats.

• No need for data labeling or human oversight, reducing operational complexity.



Applications:

• IoT Device Manufacturing: Enhancing the security measures of IoT devices to prevent data intrusion and exfiltration.

• Smart Cities: Boosting the robustness of smart city network infrastructures against potential cyber threats.

• Healthcare Providers: Protecting critical healthcare data and network systems from unauthorized access and potential breaches.



Development: Technology Readiness Level (TRL) 5. It has been successfully validated in a relevant laboratory environment, demonstrating its promising potential for a broader application.



IP Status: Provisional Patent No. 63/592,850, “Network Security and Related Apparatuses, Methods, and Security Systems,” BEA Docket No. BA-1503.



INL seeks to license the above intellectual property to a company with a demonstrated ability to bring such inventions to the market. Exclusive rights in defined fields of use may be available. Added value is placed on relationships with small businesses, start-up companies, and general entrepreneurship opportunities.



Please visit Technology Deployment’s website at https://inl.gov/inl-initiatives/technology-deployment for more information on working with INL and the industrial partnering and technology transfer process.



Companies interested in learning more about this licensing opportunity should contact Andrew Rankin at td@inl.gov.


Attachments/Links
Contact Information
Contracting Office Address
  • 1955 N Fremont Avenue
  • Idaho Falls , ID 83415
  • USA
Primary Point of Contact
Secondary Point of Contact


History
  • Jan 08, 2024 05:28 pm ESTSpecial Notice (Original)

TRY FOR FREE

Not a USAOPPS Member Yet?

Get unlimited access to thousands of active local, state and federal government bids and awards in All 50 States.

Start Free Trial Today >