Risk
11/18/2008
06:22 AM
Connect Directly
Google+
Twitter
RSS
E-Mail
50%
50%

Secure OS Gets Highest NSA Rating, Goes Commercial

Unlike existing commercial OSes, Integrity OS is designed and certified to defend against sophisticated attacks

An operating system used in military fighter planes has raised the bar for system security as a new commercial offering.

After receiving the highest security rating by a National Security Agency (NSA)-run certification program, Green Hills Software has announced that its Integrity-178B operating system was certified as EAL6+ and that the company had spun off a subsidiary to market the OS to the private sector as well as government agencies.

"[EAL6+] is the highest [rating] in the world [given to an OS so far today]. This means that the OS was designed and certified to defend against well-funded and sophisticated attackers," says David Chandler, CEO of Integrity Global Security, the new Green Hills subsidiary.

Windows and Linux, meanwhile, are EAL 4+ certified, which means they can defend against "inadvertent and casual" security breach attempts, Chandler says. Integrity-178 B meets the rigorous Common Criteria Separation Kernel Protection Profile (SKPP) standard, which guarantees that malicious code can't corrupt or harm any other application running on the system.

"I'm delighted that they have accomplished this," said Stephen Hanna, co-chair of the Trusted Computing group and distinguished engineer with Juniper Networks, during his keynote at the CSI 2008 conference in National Harbor, Md., Tuesday. "This is serious security."

The OS, which was first deployed in the B1B bomber in 1997, today runs in military and commercial aircraft, including the F-16, F-22, and F-35 military jets, and the Airbus 380 and Boeing 787 airplanes. "It was developed for the highest level of security and reliability," Chandler says. "It's designed to provide a separation, so that what's happening in one area of the computer will not hurt the other part of the OS."

Popular operating systems, such as Windows, Linux, and MacOS, can run atop Integrity-178B, basically as virtual "guests" on the OS, while Integrity runs in hardware. Each operates in its own partition so that if one area is compromised, it can't spread to other areas of the system. "If a hacker got in past the firewall, intrusion detection system, and through Linux," he couldn't get anywhere else in the system, Chandler says.

The OS can run as the sole OS or on servers and clients running Windows, Linux, MacOS, Solaris, and VxWorks, as well as on Palm OS and Symbian PDA's.

Why go commercial now with the hardened OS? Integrity's Chandler says enterprises have been ready for "quite some time" for a more secure operating system. The system and its associated integration and consulting services are custom solutions, says Chandler, who declined to reveal pricing details for that reason.

But whether enterprises will have room in their budgets for hardening their OS environments is unclear as the global financial crisis worsens.

Chandler maintains that locking down the OS saves money for security in the long run. "There's an opportunity that this [solution] could be a cost savings for enterprises, with all that is spent on intrusion prevention" and other security tools and efforts, he says.

Meanwhile, Neil MacDonald, vice president and fellow at Gartner, says partitioning is key to ensuring the security of data and represents the foundation of Gartner's Adaptive Security Infrastructure vision. "Security software running on the same physical machine as the workloads and information it is protecting can't be unequivocally trusted without strong isolation, high assurance, and resiliency of the software," he says.

Have a comment on this story? Please click "Discuss" below. If you'd like to contact Dark Reading's editors directly, send us a message Kelly Jackson Higgins is Executive Editor at DarkReading.com. She is an award-winning veteran technology and business journalist with more than two decades of experience in reporting and editing for various publications, including Network Computing, Secure Enterprise ... View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
Security Operations and IT Operations: Finding the Path to Collaboration
A wide gulf has emerged between SOC and NOC teams that's keeping both of them from assuring the confidentiality, integrity, and availability of IT systems. Here's how experts think it should be bridged.
Flash Poll
New Best Practices for Secure App Development
New Best Practices for Secure App Development
The transition from DevOps to SecDevOps is combining with the move toward cloud computing to create new challenges - and new opportunities - for the information security team. Download this report, to learn about the new best practices for secure application development.
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2017-0290
Published: 2017-05-09
NScript in mpengine in Microsoft Malware Protection Engine with Engine Version before 1.1.13704.0, as used in Windows Defender and other products, allows remote attackers to execute arbitrary code or cause a denial of service (type confusion and application crash) via crafted JavaScript code within ...

CVE-2016-10369
Published: 2017-05-08
unixsocket.c in lxterminal through 0.3.0 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (preventing terminal launch), or possibly have other impact (bypassing terminal access control).

CVE-2016-8202
Published: 2017-05-08
A privilege escalation vulnerability in Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) releases earlier than v7.4.1d and v8.0.1b could allow an authenticated attacker to elevate the privileges of user accounts accessing the system via command line interface. With affected version...

CVE-2016-8209
Published: 2017-05-08
Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Management Module is continuously scanned on port 22, may allow attackers to cause a denial of service (crash and reload) of the management module.

CVE-2017-0890
Published: 2017-05-08
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.

Dark Reading Radio
Archived Dark Reading Radio
In past years, security researchers have discovered ways to hack cars, medical devices, automated teller machines, and many other targets. Dark Reading Executive Editor Kelly Jackson Higgins hosts researcher Samy Kamkar and Levi Gundert, vice president of threat intelligence at Recorded Future, to discuss some of 2016's most unusual and creative hacks by white hats, and what these new vulnerabilities might mean for the coming year.