Please use this identifier to cite or link to this item: https://ah.lib.nccu.edu.tw/handle/140.119/75843
題名: Securing KVM-based cloud systems via virtualization introspection
作者: Lee, Sheng Wei;Yu, Fang
郁方
貢獻者: 資管系
關鍵詞: Artificial intelligence; Ecosystems; Linux; Program processors; Systems science; Artificial intelligence techniques; Cloud structure; Computing ecosystems; Decision rules; Malicious attack; Software defects; Virtual machines; Virtualizations; Virtual reality
日期: Feb-2014
上傳時間: 16-Jun-2015
摘要: Linux Kernel Virtual Machine (KVM) is one of the most commonly deployed hypervisor drivers in the IaaS layer of cloud computing ecosystems. The hypervisor provides a full-virtualization environment that intends to virtualize as much hardware and systems as possible, including CPUs, network interfaces and chipsets. With KVM, heterogeneous operating systems can be installed in Virtual Machines (VMs) in an homogeneous environment. However, it has been shown that various breaches due to software defects may cause damages on such a cloud ecosystem. We propose a new Virtualization Introspection System (VIS) to protect the host as well as VMs running on a KVM-based cloud structure from malicious attacks. VIS detects and intercepts attacks from VMs by collecting their static and dynamic status. We then replay the attacks on VMs and leverage artificial intelligence techniques to derive effective decision rules with unsupervised learning nature. The preliminary result shows the promise of the presented approach against several modern attacks on CVE-based vulnerabilities. © 2014 IEEE.
關聯: Proceedings of the Annual Hawaii International Conference on System Sciences, 2014, 論文編號 6759220, Pages 5028-5037, 47th Hawaii International Conference on System Sciences, HICSS 2014; Waikoloa, HI; United States; 6 January 2014 到 9 January 2014; 類別編號E2504; 代碼 105660
資料類型: conference
DOI: http://dx.doi.org/10.1109/HICSS.2014.617
Appears in Collections:會議論文

Files in This Item:
File Description SizeFormat
index.html176 BHTML2View/Open
Show full item record

Google ScholarTM

Check

Altmetric

Altmetric


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.