Protecting kernel data through virtualization technology

Donghai Tian*, Deguang Kong, Hu Changzhen, Peng Liu

*此作品的通讯作者

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Operating system security (OS) is the basis for trust computing. As the kernel rootkits become popular and lots of kernel vulnerabilities are exposed, the OS kernel suffers a large number of attacks. It is difficult to protect the kernel by its own module because the kernel rootkits has the same ability to cripple the security module within the same kernel space. Recently, with the virtualization renaissance, virtualization technology provides many new ways to improve the system security. Utilizing this new technology, we present a kernel protection system called VMhuko. By monitoring the kernel data access actively, VMhuko can defend the kennel data attacks on the fly. The intensive experiment shows that VMhuko can protect the kernel with moderate performance.

源语言英语
主期刊名Proceedings - 4th International Conference on Emerging Security Information, Systems and Technologies, SECURWARE 2010
5-10
页数6
DOI
出版状态已出版 - 2010
活动4th International Conference on Emerging Security Information, Systems and Technologies, SECURWARE 2010 - Venice, 意大利
期限: 18 7月 201025 7月 2010

出版系列

姓名Proceedings - 4th International Conference on Emerging Security Information, Systems and Technologies, SECURWARE 2010

会议

会议4th International Conference on Emerging Security Information, Systems and Technologies, SECURWARE 2010
国家/地区意大利
Venice
时期18/07/1025/07/10

指纹

探究 'Protecting kernel data through virtualization technology' 的科研主题。它们共同构成独一无二的指纹。

引用此