ISCAS OpenIR
Systemic threats to hypervisor non-control data
Ding, Baozeng; He, Yeping; Wu, Yanjun; Yu, Jiageng
2013
SourceIET INFORMATION SECURITY
ISSN1751-8709
Volume7Issue:4Pages:349-354
English AbstractHypervisors are becoming a widespread virtualisation layer in current computer systems. Recent successful attacks against hypervisors indicate that they face the similar integrity threats as traditional operating systems. Current approaches that secure hypervisors mainly focus on code or control-data integrity, without paying attention to non-control data integrity. In this study the authors construct attacks that target hypervisor non-control data to demonstrate which types of data within the Xen hypervisor are critical to system security. It shows privilege, resource utilisation and security policy related data are vulnerable to return-oriented programming or DMA attacks. By modifying their values from one to another, the whole system's performance will be affected. By discussing current approaches that secure hypervisors, which are not suitable for non-control data, the work is to motivate new innovation in this area to protect them.; Hypervisors are becoming a widespread virtualisation layer in current computer systems. Recent successful attacks against hypervisors indicate that they face the similar integrity threats as traditional operating systems. Current approaches that secure hypervisors mainly focus on code or control-data integrity, without paying attention to non-control data integrity. In this study the authors construct attacks that target hypervisor non-control data to demonstrate which types of data within the Xen hypervisor are critical to system security. It shows privilege, resource utilisation and security policy related data are vulnerable to return-oriented programming or DMA attacks. By modifying their values from one to another, the whole system's performance will be affected. By discussing current approaches that secure hypervisors, which are not suitable for non-control data, the work is to motivate new innovation in this area to protect them.
Indexed TypeSCI
KeywordData Integrity Security Of Data Virtualisation Systemic Threats Hypervisor Noncontrol Data Virtualisation Layer Computer Systems Secure Hypervisors Data Integrity Xen Hypervisor System Security Return-oriented Programming Dma Attacks
Department[Ding, Baozeng; He, Yeping; Wu, Yanjun; Yu, Jiageng] Chinese Acad Sci, Inst Software, Natl Engn Res Ctr Fundamental Software, Beijing 100190, Peoples R China. [Ding, Baozeng; Yu, Jiageng] Chinese Acad Sci, Grad Univ, Beijing 100049, Peoples R China.
Language英语
WOS IDWOS:000328457400012
Citation statistics
Cited Times:8[WOS]   [WOS Record]     [Related Records in WOS]
Content Type期刊论文
URIhttp://ir.iscas.ac.cn/handle/311060/16896
Collection中国科学院软件研究所
Recommended Citation
GB/T 7714
Ding, Baozeng,He, Yeping,Wu, Yanjun,et al. Systemic threats to hypervisor non-control data[J]. IET INFORMATION SECURITY,2013,7(4):349-354.
APA Ding, Baozeng,He, Yeping,Wu, Yanjun,&Yu, Jiageng.(2013).Systemic threats to hypervisor non-control data.IET INFORMATION SECURITY,7(4),349-354.
MLA Ding, Baozeng,et al."Systemic threats to hypervisor non-control data".IET INFORMATION SECURITY 7.4(2013):349-354.
Files in This Item:
There are no files associated with this item.
Related Services
Recommend this item
Bookmark
Usage statistics
Export to Endnote
Google Scholar
Similar articles in Google Scholar
[Ding, Baozeng]'s Articles
[He, Yeping]'s Articles
[Wu, Yanjun]'s Articles
Baidu academic
Similar articles in Baidu academic
[Ding, Baozeng]'s Articles
[He, Yeping]'s Articles
[Wu, Yanjun]'s Articles
Bing Scholar
Similar articles in Bing Scholar
[Ding, Baozeng]'s Articles
[He, Yeping]'s Articles
[Wu, Yanjun]'s Articles
Terms of Use
No data!
Social Bookmark/Share
All comments (0)
No comment.
 

Items in the repository are protected by copyright, with all rights reserved, unless otherwise indicated.