ISCAS OpenIR
Systemic threats to hypervisor non-control data
Ding, Baozeng; He, Yeping; Wu, Yanjun; Yu, Jiageng
2013
发表期刊IET INFORMATION SECURITY
ISSN1751-8709
卷号7期号:4页码:349-354
摘要Hypervisors are becoming a widespread virtualisation layer in current computer systems. Recent successful attacks against hypervisors indicate that they face the similar integrity threats as traditional operating systems. Current approaches that secure hypervisors mainly focus on code or control-data integrity, without paying attention to non-control data integrity. In this study the authors construct attacks that target hypervisor non-control data to demonstrate which types of data within the Xen hypervisor are critical to system security. It shows privilege, resource utilisation and security policy related data are vulnerable to return-oriented programming or DMA attacks. By modifying their values from one to another, the whole system's performance will be affected. By discussing current approaches that secure hypervisors, which are not suitable for non-control data, the work is to motivate new innovation in this area to protect them.; Hypervisors are becoming a widespread virtualisation layer in current computer systems. Recent successful attacks against hypervisors indicate that they face the similar integrity threats as traditional operating systems. Current approaches that secure hypervisors mainly focus on code or control-data integrity, without paying attention to non-control data integrity. In this study the authors construct attacks that target hypervisor non-control data to demonstrate which types of data within the Xen hypervisor are critical to system security. It shows privilege, resource utilisation and security policy related data are vulnerable to return-oriented programming or DMA attacks. By modifying their values from one to another, the whole system's performance will be affected. By discussing current approaches that secure hypervisors, which are not suitable for non-control data, the work is to motivate new innovation in this area to protect them.
收录类别SCI
关键词Data Integrity Security Of Data Virtualisation Systemic Threats Hypervisor Noncontrol Data Virtualisation Layer Computer Systems Secure Hypervisors Data Integrity Xen Hypervisor System Security Return-oriented Programming Dma Attacks
部门归属[Ding, Baozeng; He, Yeping; Wu, Yanjun; Yu, Jiageng] Chinese Acad Sci, Inst Software, Natl Engn Res Ctr Fundamental Software, Beijing 100190, Peoples R China. [Ding, Baozeng; Yu, Jiageng] Chinese Acad Sci, Grad Univ, Beijing 100049, Peoples R China.
语种英语
WOS记录号WOS:000328457400012
引用统计
被引频次:8[WOS]   [WOS记录]     [WOS相关记录]
内容类型期刊论文
URI标识http://ir.iscas.ac.cn/handle/311060/16896
专题中国科学院软件研究所
推荐引用方式
GB/T 7714
Ding, Baozeng,He, Yeping,Wu, Yanjun,et al. Systemic threats to hypervisor non-control data[J]. IET INFORMATION SECURITY,2013,7(4):349-354.
APA Ding, Baozeng,He, Yeping,Wu, Yanjun,&Yu, Jiageng.(2013).Systemic threats to hypervisor non-control data.IET INFORMATION SECURITY,7(4),349-354.
MLA Ding, Baozeng,et al."Systemic threats to hypervisor non-control data".IET INFORMATION SECURITY 7.4(2013):349-354.
条目包含的文件
条目无相关文件。
个性服务
推荐该条目
保存到收藏夹
查看访问统计
导出为Endnote文件
谷歌学术
谷歌学术中相似的文章
[Ding, Baozeng]的文章
[He, Yeping]的文章
[Wu, Yanjun]的文章
百度学术
百度学术中相似的文章
[Ding, Baozeng]的文章
[He, Yeping]的文章
[Wu, Yanjun]的文章
必应学术
必应学术中相似的文章
[Ding, Baozeng]的文章
[He, Yeping]的文章
[Wu, Yanjun]的文章
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。