We are the Cyber Security Team of Masaryk University
Since 2009, we have been protecting the cyber environment, transferring research findings and developmental project outcomes into practice, and educating users not only at Masaryk University.
We are the first certified security team in Czechia.
We protect the cyberspace of Masaryk University
Masaryk University is a modern educational institution for which secure cyberspace is necessary. We make sure it is. See what services we provide to achieve this goal.
We share our knowledge and cooperate with students
Cybersecurity is becoming more and more relevant, and we are experts in it. We offer the opportunity to cooperate with us and learn a lot. Opportunities for cooperation.
We are actively involved in scientific research projects
The projects aim to research and develop methods for increasing the level of cybersecurity, both nationally and internationally. Have a look at some of the best projects currently in progress.
Our constituency is the network of Masaryk University, that includes:
all IPv4 adresses from the range 147.251.0.0/16
all IPv6 adresses from the range 2001:718:801::/48
muni.cz domain
Our competencies are then formally set out in the rector's directives no. 9/2017 Information Technology Administration and no. 10/2017 Use of Information Technologies. It is mainly the coordination and security incidents solving in the MU network, communication with the superior security team of the CESNET academic network, and with IT MU administrators.
Projects and Collaboration
Through research and development projects, we strengthen our expertise and enhance the quality of the services we provide.
Ongoing Projects
Andromeda: Automated analysis of security telemetry
Project information
Automatizovaná analýza bezpečnostní telemetrie
(Andromeda)
- Project Identification
- VK01030070
- Project Period
- 1/2023 - 12/2025
- Investor / Pogramme / Project type
-
Ministry of the Interior of the CR
- Open Calls for Security Research 2023-2029 (OPSEC)
- MU Faculty or unit
- Institute of Computer Science
The project addresses the user organization’s need for effective processing of security telemetry flood generated in the context of Czech cyberspace protection. Its aim is research, development, and innovation in the data science and security automation area. Its goal is to create a reference system for processing, retention, and advanced analysis of security telemetry in both relational and graph paradigm, including the use of machine learning. The existence of a similar system is imperative for the future advances in automated cybersecurity. An encapsulating result will demonstrate the automation possibilities of selected sec-ops tasks in the data analytics area. The outcome will be a coherent set of open-source tools with the goal of maximizing its national and international impact.
Sustainable Development Goals
Masaryk University is committed to the UN Sustainable Development Goals, which aim to improve the conditions and quality of life on our planet by 2030.
AICA-CONNECT: Fostering interdisciplinary and intersectoral collaboration for the development of autonomous cybersecurity solutions
Project information
Fostering interdisciplinary and intersectoral collaboration for the development of autonomous cybersecurity solutions
(AICA-CONNECT)
- Project Identification
- VJ03030039
- Project Period
- 6/2023 - 12/2025
- Investor / Pogramme / Project type
-
Ministry of the Interior of the CR
- Strategic Support Program for Security Research in the Czech Republic 2015-2020 (IMPAKT 1)
- MU Faculty or unit
- Institute of Computer Science
Předmětem předloženého projektu je navázání a posilování spolupráce mezi výzkumnými organizacemi, průmyslovými partnery a vládními aktéry na výzkumu a vývoji autonomních kyberbezpečnostních systémů. Vzhledem k charakteru těchto systémů je třeba vyřešit velké množství výzkumných, technických, etických i právních problémů, jejichž rozsah je mimo možnosti kterékoliv jednotlivé organizace. Předložený projekt proto usiluje o vybudování interdisciplinární a intersektorální sítě spolupracujících entit, jejímž cílem je podpora vzájemné výměny informací, specifikace relevantních problémových oblastí, organizace vzájemných spoluprací, koordinace přípravy projektů a organizace aktivit podporujících rozvoj relevantních technologií.
Sustainable Development Goals
Masaryk University is committed to the UN Sustainable Development Goals, which aim to improve the conditions and quality of life on our planet by 2030.
SOCCER: Developing and deploying SOC capabilities for the academic sector - a teamwork of Universities and RTOs in the CEE region
Project information
Developing and deploying SOC capabilities for the academic sector - a teamwork of Universities and RTOs in the CEE region
(SOCCER)
- Project Identification
- 101128073
- Project Period
- 10/2023 - 9/2026
- Investor / Pogramme / Project type
-
European Union
- DIGITAL EUROPE
- MU Faculty or unit
-
Institute of Computer Science
- RNDr. Martin Laštovička, Ph.D.
- Mgr. Daniela Belajová
- Mgr. Pavel Brejcha
- RNDr. Martin Drašar, Ph.D.
- RNDr. Michal Javorník, Ph.D.
- Mgr. Richard Kalinec
- Ing. Martin Kovařík
- Mgr. Antonín Florián Kretschmer
- Mgr. Dávid Magušin
- Bc. et Bc. Natalia Peterková
- Bc. Tomáš Plesník
- Mgr. Matúš Raček
- RNDr. Vít Rusňák, Ph.D.
- Bc. Matěj Smyčka
- RNDr. Stanislav Špaček, Ph.D.
- Mgr. Andrej Tomči
- RNDr. Daniel Tovarňák, Ph.D.
- RNDr. Petr Velan, Ph.D.
- Cooperating Organization
-
CESNET
- Responsible person Ing. Martin Žádník, Ph.D.
- Responsible person Roman Šenkeřík
- Responsible person Michal Mešťan
Tartu Ülikool
- Responsible person Ivar Koppel
- Responsible person Lucjan Stalmach
- Responsible person Darius Štitilis
- Responsible person Izabela Albrycht
- Responsible person Mariusz Kwinta-Pudełko
Developing and deploying SOC capabilities for the academic sector - a teamwork of Universities and RTOs in the CEE region project is aimed at strengthening the cybersecurity capabilities and resilience of the EU by supporting the development of Security Operations Centres (SOC) preparedness, readiness, capabilities, and infrastructure within the academic sector – Universities and Research and Technology Organisations (RTOs) particularly in the Central Eastern Europe (CEE). The CEE region is now being heavily affected by a multitude of cyber operations executed parallelly to growing geopolitical tensions, the same trend can be observed regarding the academic centres which are now under a permanent threat, experiencing “the highest volumes of attacks every month in 2022 and in 2021”. Thus, the project is expected to support a structured and underpinned with unified methodology, development and deployment of SOC infrastructure and services within academic centres involved in the project’s consortium. This includes a creation of a Toolbox to share best practices regarding the SOC establishment and models of possible SOC services deployment and integration. Academic sector saturation with given SOC solutions will result in better monitoring, detection and response to cyber-attacks and threats, including knowledge and cybersecurity threat intelligence (CTI) sharing (vulnerability databases), as well as supporting the popularisation of a framework for joint reaction against cyber incidents (FIRST, SIM3). An important objective of the project is a popularization of knowledge about the SOC development, deployment, and functioning and a buildout of relevant SOC’s skills across cybersecurity community within universities, a future grouping of cybersecurity professionals expected to support private and public entities in upgrading their cybersecurity capabilities.
Sustainable Development Goals
Masaryk University is committed to the UN Sustainable Development Goals, which aim to improve the conditions and quality of life on our planet by 2030.
ResilMesh: Situation Aware enabled Cyber Resilience for Dispersed, Heterogenous Cyber Systems
Project information
ResilMesh: Situation Aware enabled Cyber Resilience for Dispersed, Heterogenous Cyber Systems
(ResilMesh)
- Project Identification
- 101119681
- Project Period
- 10/2023 - 9/2026
- Investor / Pogramme / Project type
-
European Union
- Horizon Europe
- Cluster 3 - Civil Security for Society
- MU Faculty or unit
- Institute of Computer Science
- Cooperating Organization
-
JOANNEUM RESEARCH
University of Murcia
Jyväskylä University of Applied Sciences
Silent Push Limited
Technological University of the Shannon
- Responsible person Brian Lee
- Responsible person Xi Lan
GMV Soluciones Globales Internet S.A.U.
NETWORK IRELAND LIMITED (F6S)
ALIAS ROBOTICS S.L. (ALIAS)
ALGOWATT SPA (ALWA)
REGION DE MURCIA (MURC)
MONTIMAGE EURL (MONT)
ROYAL HOLLOWAY AND BEDFORD NEW COLLEGE (RHUL)
ResilMesh will develop a cyber situational awareness based Security Orchestration and Analytics Platform Architecture (SOAPA)
toolset to improve digital infrastructure resilience through fulfilling these objectives:
1: Improving end-to-end data aggregation and security control interoperability in dispersed digital infrastructures
2: Giving CSIRTs better awareness of the service and asset dependencies of their network
3: Helping CSIRTs to build cyber resilience capacity
4:Developing AI based algorithms and tools for early and ongoing attack detection and prediction
5:Developing a situation assessment system to view and forecast network level risk
These objectives are achieved through a 10 work package project plan. ResilMesh will build a SOAPA platform by combining existing security controls and other tools from consortium participant with readily available open source elements. It will develop algorithms and software tools in the project and will integrate these with the platform to form a complete SOAPA system. It will validate the operation of the ResilMesh system through use cases in three different infrastructure categories (i.e. renewable energy SCADA; smart
manufacturing robotics and regional civil infrastructure) and five open call use cases. These 8 pilots will ensure that the platform is evaluated across a wide range of critical infrastructures.
ReilMesh develops AI based algorithms to improve attack detection and prediction for endpoint and network traffic; it help CSIRTs deal digital infrastructure complexity and heterogeneity by providing tools to give them better awareness of environment dependencies, threats and risk while preserving privacy. It increases the reliability and granularity of shared threat intelligence to improve context for threat hunting and cyber forensics incident response leading to more robust decision making. Finally it provides a suite of best practices to build cyber capacity to improve resilience preparation.
Sustainable Development Goals
Masaryk University is committed to the UN Sustainable Development Goals, which aim to improve the conditions and quality of life on our planet by 2030.
Publications
Total number of publications: 2
2024
-
1st Workshop on Network Security Operations (NeSecOr) Year: 2024, type: Workshop
-
Hierarchical Modeling of Cyber Assets in Kill Chain Attack Graphs 20th International Conference on Network and Service Management, CNSM 2024, year: 2024
SECURIAN: Streamlining cybersecurity incident analyses
Project information
Streamlining cybersecurity incident analyses
(SECURIAN)
- Project Identification
- FW06010009
- Project Period
- 1/2023 - 12/2025
- Investor / Pogramme / Project type
-
Technology Agency of the Czech Republic
- TREND
- Subprograms 1 Technology leaders
- MU Faculty or unit
-
Institute of Computer Science
- RNDr. Vít Rusňák, Ph.D.
- RNDr. Milan Čermák, Ph.D.
- Bc. Štěpán Dvorský
- Denys Marakhovskyi
- Cooperating Organization
-
FlowMon Networks, a.s.
- Responsible person Jan Střítežský
- Responsible person Martin Holkovič
Cybersecurity teams currently use the tools that excel in analytical capabilities but offer only limited support for their procedural documentation. It results in unnecessarily high cognitive demands on analysts, which makes the whole process time-consuming and error-prone. The project aims at providing a drill-down analysis support tool that combines visual querying methods, an analytical provenance concept, and a machine-readable data format to store provenance metadata. The proposed approach will enable the authoring of reusable analytical process reports and their automatic execution, which will lead to a significant streamlining of cybersecurity analysts' workflows. By using a recommendation system, it will also be possible to propose further analytical steps.
Sustainable Development Goals
Masaryk University is committed to the UN Sustainable Development Goals, which aim to improve the conditions and quality of life on our planet by 2030.
Methodological Support for Log Management in an Organization
Project information
Metodická podpora pro log management v organizaci
- Project Identification
- 753R1/2024
- Project Period
- 7/2024 - 6/2025
- Investor / Pogramme / Project type
-
CESNET
- Development Fund of CESNET
- MU Faculty or unit
- Institute of Computer Science
The project's goal is to design methodologies for maintaining and expanding the logging infrastructure and implementing technical support tools for automating processes and improving situational awareness. The proposed solution will cover the issue of logging in large and partly decentralized networks, which are common in the environment of public universities. At the same time, current and upcoming legislation affecting the collection of events will be considered when compiling the methodologies; represented in the Czech Republic by the Cyber Security Act (181/2014 Sb.) and the Personal Data Processing Act (110/2019 Sb.), Methodologies and software outputs will be created in an open form and will be directly usable by the CESNET association or by individual member organizations.
Tool for Supporting and Managing Cyber and Information Security in an Organization
Project information
Nástroj pro podporu řízení kybernetické a informační bezpečnosti v organizaci
- Project Identification
- 737/2023
- Project Period
- 1/2024 - 12/2025
- Investor / Pogramme / Project type
-
CESNET
- Development Fund of CESNET
- MU Faculty or unit
- Institute of Computer Science
- Cooperating Organization
-
The Academy of Fine Arts in Prague
- Responsible person Ing. Petr Grešl
- Responsible person Ing. Jiří Slanina
- Responsible person Ing. Pavel Härtel
- Responsible person Ing. Jiří Čepák
- Responsible person Ing. Petr Vlachýnský
Cílem tohoto projektu je návrh a následná implementace nástroje, který významně zefektivní procesy spojené se zavedením a provozováním systému řízení bezpečnosti informací na veřejných vysokých školách.
Navrhované řešení pokryje komplexní problematiku SŘBI s důrazem na realistický přístup k analýze a řízení rizik. Řešení bude dostatečně flexibilní, plně reflektující specifické potřeby vysokých škol, s rozhraním pro systém vzdělávání (rozvoj kompetencí) v oblasti bezpečnosti informací a pro další relevantní informační systémy vysokých škol.
Navrhované řešení bude použitelné pro samotné sdružení Cesnet, případně pro jednotlivé členské organizace.
Experiences and Know-how
The implementation of projects has always been a cornerstone of our activities. We have nearly fifteen years of experience in addressing both national and international projects, as evidenced by the overview of completed projects. Within some projects, we have also developed useful tools and released them as open-source on our GitHub.
Our team of experts combines theoretical knowledge with extensive practical experience. We are open to collaboration with partners from the academia as well as entities from the public and private sectors, including contract research. We offer students the opportunity to participate in our projects through paid internships and theses. If you are interested in collaborating with us, please do not hesitate to contact us.
For students
Courses
Our team members pass on their knowledge within several courses taught at the Faculty of Informatics MU:
- Cybersec. in an Organization (PV210)
- Network Forensics (PV280)
- Seminar on Cyber Attacks (PV276)
- Advanced Topics of Cyber Security (PA211)
Thesis Supervision
We offer students the opportunity to write their theses under the supervision of our team members. The theses we supervise are usually related to current projects.