| Period of Performance | Topic Name | Proposal Title | PI Name | Company Name | State | Amount Awarded |
| Cyber Security Assessment | Benchmarks for evaluation of DDoS defense systems | | University of Delaware | | |
| Network Attack Forensics | Single Packet IP Traceback Through Internet Autonomous Systems | | Southwest Research Institute | | |
| Network Attack Forensics | ZombieStones: Attack Tracing Across Events Separated in Time | | BBN Technologies | | |
| Security and Trustworthiness for Critical Infrastructure Protection (CIP) | AVACC: Automated Vulnerability Assessment of Critical Cyber-Infrastructure Through Policy-based Configuration Synthesis | | Telcordia Technologies | | |
| Security and Trustworthiness for Critical Infrastructure Protection (CIP) | Embedded Firewall for Robust Protection of Mission Critical Operations | | Adventium Labs | | |
| Security and Trustworthiness for Critical Infrastructure Protection (CIP) | Enhanced Topological Vulnerability Analysis and Visualization | | George Mason University | | |
| Security and Trustworthiness for Critical Infrastructure Protection (CIP) | Incrementally Deployable Security for Interdomain Routing | | Princeton University | | |
| Technologies to Defend Against Identity Theft | PhishBouncer - An Architectural Approach to Defending Against Phishing Attacks | | BBN | | |
| Technologies to Defend Against Identity Theft | Phisherman | | SPARTA, Inc. | | |
| Technologies to Defend Against Identity Theft | SpoofGuard Anti-Phishing Technologies | | Stanford University | | |
| Vulnerability Discovery and Remediation | Copilot - A High Assurance and Independent Security Auditor | | Komoku, Inc. | | |
| Vulnerability Discovery and Remediation | Model Checking Software Binaries | | GrammaTech, Inc | | |
| Vulnerability Discovery and Remediation | Open Source Hardening Project | | Stanford University | | |
| Vulnerability Discovery and Remediation | Preventing SQL Code Injection by Combining Static and Runtime Analysis | | Georgia Institute of Technology | | |
| | Vulnerability Prevention | Adding Mandatory Access Control to Java VMs | | University of California, Irvine | | |
| Wireless Security | M.A.P. (Measure, Analyze, Protect): security through measurement for wireless LANs | | Dartmouth College | | |
| Wireless Security | Secure Coordination and Communication in a Crisis Using Hand-held Devices | | University of Michigan, Ann Arbor | | |