Hey guys, member of the (currently unverified) third place team, Shellphish. If anyone has any questions, I (or another member of my team) would be glad to answer them. We'll also be giving a talk at DEF CON on Sunday after the CTF ends, where we'll be open sourcing our CRS!
Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
21–30 of 30 posts
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#22Hey guys, member of the (currently unverified) third place team, Shellphish. If anyone has any questions, I (or another member of my team) would be glad to answer them. We'll also be giving a talk at DEF CON on Sunday after the CTF ends, where we'll be open sourcing our CRS!
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#23Hey guys, member of the (currently unverified) third place team, Shellphish. If anyone has any questions, I (or another member of my team) would be glad to answer them. We'll also be giving a talk at DEF CON on Sunday after the CTF ends, where we'll be open sourcing our CRS!
What kind of AI was involved in your and competitors systems?
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#24Hey guys, member of the (currently unverified) third place team, Shellphish. If anyone has any questions, I (or another member of my team) would be glad to answer them. We'll also be giving a talk at DEF CON on Sunday after the CTF ends, where we'll be open sourcing our CRS!
Can you explain how this particular CTF work and how the system in general work against adversary? The article said insecure code and code filled with bugs are constantly being fed to the system. I don't really get it.
Such services contain bugs, so what each player must do is identify the bugs, fix them or mitigate them, and at the same time exploit them to gain access to the boxes of the other players.
So basically the programs in the competition do
* vulnerability identification
* vulnerability mitigation
* identification of the best target to attack (presumably based on the first thing, not sure if other things factor in)
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#25Hey guys, member of the (currently unverified) third place team, Shellphish. If anyone has any questions, I (or another member of my team) would be glad to answer them. We'll also be giving a talk at DEF CON on Sunday after the CTF ends, where we'll be open sourcing our CRS!
What kind of AI was involved in your and competitors systems?
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#26Hey guys, member of the (currently unverified) third place team, Shellphish. If anyone has any questions, I (or another member of my team) would be glad to answer them. We'll also be giving a talk at DEF CON on Sunday after the CTF ends, where we'll be open sourcing our CRS!
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#27Hey guys, member of the (currently unverified) third place team, Shellphish. If anyone has any questions, I (or another member of my team) would be glad to answer them. We'll also be giving a talk at DEF CON on Sunday after the CTF ends, where we'll be open sourcing our CRS!
Is this both automated defense and offense via machine learning, or just automated defensive systems? If it includes automated offensive systems, what's to keep these kinds of systems from jumping outside of their sandboxes and compromising the outside world?
David Brumley, PI of the research, went on to found ForAllSecure which is the company covered in the article.
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#28Hey guys, member of the (currently unverified) third place team, Shellphish. If anyone has any questions, I (or another member of my team) would be glad to answer them. We'll also be giving a talk at DEF CON on Sunday after the CTF ends, where we'll be open sourcing our CRS!
I'd love to learn more about the techniques actually being used in thse systems. Any good pointers to some scientific papers or review articles on the subject? I have a background in machine learning so am comfortable with technical papers.
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#29what? This was special olympics of CTF. All AI teams played at the same, terribad level, score differences were minimal.
Re: Carnegie Mellon’s Mayhem AI Wins DARPA’s Cyber Grand Challenge
#30It's funny that Brumley's first-place-winning robot CTF team is going to be competing against his first-place-winning human CTF team at DEFCON. The DARPA team is headed up by professor David Brumley. He also leads the Carnegie Mellon CTF hacker group PPP (Plaid Parliament of Pwning) that often wins at DEFCON's CTFs. This article mentioned that the Mayhem robot is going to be battling the human CTF players at DEFCON.…