Performance Testing of GPU-Based Approximate Matching Algorithm on Network Traffic

Abstract

Insider threat is one of the risks both government and private organizations have to deal with in protecting their important information. Data exfiltration and data leakage resulting from insiders activities can be very difficult to identify and quantify. Unfortunately, existing solutions that efficiently check whether data moving across a network is known to be sensitive are not resilient to attackers that make changes even trivial modifications to the data prior to exfiltration. This capstone examines the potential use of the sdhash approximate matching algorithm within the data exfiltration domain. Sdhash can be employed to look for active transfer of known sensitive files in network traffic, but in practice is hindered by the computational time required to check for known sensitive data. This research tested the performance of both the GPU and CPU implementation of sdhash to determine their suitability in high-network traffic environments such as the Department of Defense. The results of this experiment showed that better performance is achieved with the GPU when comparing large data sets. For small data sets, the CPU and GPU implementations exhibited similar performance. Thus, sdhash in the GPU implementation would be suitable for the Defense Department's use.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Mar 01, 2015
Accession Number
ADA620807

Entities

People

  • Mujeeb B. Jimoh

Organizations

  • Naval Postgraduate School

Tags

Communities of Interest

  • Cyber
  • Energy and Power Technologies
  • Engineered Resilient Systems
  • Materials and Manufacturing Processes

DTIC Thesaurus Topics

  • Central Processing Units
  • Computers
  • Cyber Threats
  • Cybersecurity
  • Data Leakages
  • Data Sets
  • Department Of Defense
  • Detection
  • Electronic Mail
  • High Performance Computing
  • Information Security
  • Information Systems
  • Insider Threats
  • Intrusion Detection
  • Intrusion Detectors
  • Social Media
  • Word Processors

Fields of Study

  • Computer science

Readers

  • Computational Fluid Dynamics (CFD)
  • Cybersecurity.
  • Gulf War Illness and Chronic Multisymptom Illness in Veterans.