Win, Thu Yein ORCID: 0000-0002-4977-0511, Tianfield, Huaglory, Mair, Quentin, Said, Taimur Al and Rana, Omer F. (2014) Virtual Machine Introspection. In: SIN '14: Proceedings of the 7th International Conference on Security of Information and Networks, September 09 - 11, 2014, Glasgow, United Kingdom.
|
Text (© Thu Yein Win | ACM 2014. This is the author's version of the work. Definitive Version published in: SIN '14: Proceedings of 7th International Conference on Security of Information and Networks http://dx.doi.org/10.1145/2659651.2659710)
Virtual Machine Introspection.pdf - Accepted Version Available under License All Rights Reserved. Download (273kB) | Preview |
Abstract
Cyberattacks targeted at virtualization infrastructure underlying cloud computing services has become increasingly sophisticated. This paper presents a novel malware and rookit detection system which protects the guests against different attacks. It combines system call monitoring and system call hashing on the guest kernel together with Support Vector Machines (SVM)-based external monitoring on the host. We demonstrate the effectiveness of our solution by evaluating it against well-known user-level malware as well as kernel-level rootkit attacks. Keywords—virtualization security, cloud security,
Item Type: | Conference or Workshop Item (Paper) |
---|---|
Uncontrolled Keywords: | Virtualization, Virtualization Security, Virtual Machine Introspection, Cloud Computing |
Subjects: | Q Science > QA Mathematics > QA75 Electronic computers. Computer science Q Science > QA Mathematics > QA76 Computer software |
Divisions: | Schools and Research Institutes > School of Business, Computing and Social Sciences |
Research Priority Areas: | Applied Business & Technology |
Depositing User: | Susan Turner |
Date Deposited: | 22 Nov 2016 13:52 |
Last Modified: | 31 Aug 2023 08:01 |
URI: | https://eprints.glos.ac.uk/id/eprint/4162 |
University Staff: Request a correction | Repository Editors: Update this record