Design of a Hypervisor-based Rootkit Detection Method for Virtualized Systems in Cloud Computing Environments

  • Hwang T
  • Shin Y
  • Son K
  • et al.
N/ACitations
Citations of this article
16Readers
Mendeley users who have this article in their library.

Abstract

—Cloud computing is becoming increasingly popular. Many companies utilize cloud computing services to minimize IT infrastructure costs. The popularity of cloud computing has attracted the interest of cyber criminals. As the result, virtualized environments are a valid and attractive target for APT attacks. Since the key components in APT attacks are rootkit malware that provides stealth, detecting rootkits is an effective measure for protecting against APT attacks. Traditional rootkit detection algorithms are based on non-virtualized environments, where a detection agent tries to identify incoherency in OS system calls to detect rootkits. However, applying these algorithms to cloud computing environments entails installing a copy of the detection agent in every virtual machine, resulting in inefficient storage use and performance degradation. We propose a hypervisor-based, out-of-the-box rootkit detection system that takes cloud computing environments into consideration. The method utilizes vIPS platform to gain many beneficial traits including hypervisor-independency, agentless virtual security appliance structure, and usability. Therefore the method provides effective protection against rootkits in cloud computing environments.

Cite

CITATION STYLE

APA

Hwang, T., Shin, Y., Son, K., & Park, H. (2014). Design of a Hypervisor-based Rootkit Detection Method for Virtualized Systems in Cloud Computing Environments. In Proceedings of the AASRI Winter International Conference on Engineering and Technology (AASRI-WIET 2013) (Vol. 79). Atlantis Press. https://doi.org/10.2991/wiet-13.2013.7

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free