首页> 外文期刊>Computers & Security >Gemini: Guest-transparent honey files via hypervisor-level access redirection
【24h】

Gemini: Guest-transparent honey files via hypervisor-level access redirection

机译:Gemini:通过系统管理程序级别的访问重定向来宾透明的honey文件

获取原文
获取原文并翻译 | 示例
           

摘要

Data safety has become a critical problem in the face of various cyber-attacks aiming at stealing or divulging sensitive information. In the event that adversaries have gained access to a system storing classified data, such crucial systems should actively protect the integrity of this data. To purposely deceive an attacker, we propose that accesses to sensitive data can be dynamically partitioned to prevent malicious tampering. In this paper, we present GEMINI, a virtualization-based system to transparently redirect accesses to classified files based on the context of the access (e.g., process, user, time-of-day, etc.). If an access violates preconfigured data-use policies then it will be rerouted to a honey version of the file, specifically crafted to be manipulated by the adversary. Thus, GEMINI transforms static, sensitive files into moving targets and provides strong transparency and tamper-resistance as it is located at the hypervisor level. Our evaluation shows that GEMINI effectively neutralizes several real-world attacks on various sensitive files and can be integrated seamlessly into current cloud environments. (C) 2018 Elsevier Ltd. All rights reserved.
机译:面对旨在窃取或泄露敏感信息的各种网络攻击,数据安全已成为一个关键问题。如果对手获得了访问存储机密数据的系统的权限,则此类关键系统应积极保护此数据的完整性。为了故意欺骗攻击者,我们建议可以动态分区对敏感数据的访问,以防止恶意篡改。在本文中,我们介绍了GEMINI,这是一个基于虚拟化的系统,可以根据访问的上下文(例如进程,用户,时间等)将访问透明地重定向到分类文件。如果访问违反了预先配置的数据使用策略,则它将被重新路由到该文件的一个特殊版本,该版本专门由对手操纵。因此,GEMINI将静态文件,敏感文件转换为移动目标,并位于虚拟机管理程序级别,从而提供强大的透明度和防篡改功能。我们的评估表明,GEMINI有效地抵消了对各种敏感文件的几种实际攻击,并且可以无缝集成到当前的云环境中。 (C)2018 Elsevier Ltd.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号