首页>
外国专利>
System and method for performing protection against kernel rootkits in a hypervisor environment
System and method for performing protection against kernel rootkits in a hypervisor environment
展开▼
机译:在管理程序环境中执行针对内核rootkit的保护的系统和方法
展开▼
页面导航
摘要
著录项
相似文献
摘要
A method includes creating a soft whitelist having an entry corresponding to a first guest kernel page in a guest operating system (OS) in a hypervisor environment including a hypervisor. The method also includes receiving an access attempt to a second guest kernel page, and generating a page fault when the access attempt is made to the second guest kernel page. In addition, the method includes determining that the second guest kernel page does not correspond to the entry in the soft whitelist, and denying an execution of the second guest kernel page if the second guest kernel page does not correspond to the entry in the soft whitelist.
展开▼