首页> 外文会议>2015 International Conference on Futuristic trend on Computational Analysis and Knowledge Management >Virtual machine introspection based spurious process detection in virtualized cloud computing environment
【24h】

Virtual machine introspection based spurious process detection in virtualized cloud computing environment

机译:虚拟化云计算环境中基于虚拟机自省的虚假过程检测

获取原文
获取原文并翻译 | 示例

摘要

Virtual Machines are prime target for adversary to take control by exploiting the identified vulnerability present in it. Due to increasing number of Advanced Persistent Attacks such as malware, rootkit, spyware etc., virtual machine protection is highly challenging task. The key element of Advanced Persistent Threat is rootkit that provides stealthy control of underlining Operating System (kernel). Protecting individual guest operating system by using antivirus and commercial security defense mechanism is cost effective and ineffective for virtualized environment. To solve this problem, Virtual Machine Introspection has emerged as one of the promising approaches to secure the state of the virtual machine. Virtual Machine Introspection inspects the state of multiple virtual machines by operating outside the virtual machine i.e. at hypervisor level. In this work, Virtual Machine Introspection based malicious process detection approach is proposed. It extracts the high level information such as system call details, opened known backdoor ports from introspected memory to identify the spurious process. It triggers an alert in response to detected intrusion.
机译:虚拟机是攻击者通过利用其中存在的已识别漏洞来进行控制的主要目标。由于诸如恶意软件,rootkit,间谍软件等高级持续攻击的数量不断增加,虚拟机保护是一项极具挑战性的任务。 Advanced Persistent Threat的关键要素是rootkit,它提供对底层操作系统(内核)的秘密控制。通过使用防病毒和商业安全防御机制来保护单个来宾操作系统,对于虚拟化环境而言既经济又无效。为了解决此问题,虚拟机自省已经成为保护虚拟机状态的有前途的方法之一。虚拟机内省通过在虚拟机外部(即在系统管理程序级别)进行操作来检查多个虚拟机的状态。在这项工作中,提出了一种基于虚拟机自省的恶意进程检测方法。它从自检内存中提取高级信息,例如系统调用详细信息,打开的已知后门端口,以识别虚假进程。它响应检测到的入侵触发警报。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号