IVirt: Runtime environment integrity measurement mechanism based on virtual machine introspection

被引:0
|
作者
School of Computer Science, Beijing University of Posts and Telecommunications, Beijing [1 ]
100876, China
不详 [2 ]
100876, China
不详 [3 ]
100876, China
机构
来源
Jisuanji Xuebao | / 1卷 / 191-203期
关键词
D O I
10.3724/SP.J.1016.2015.00191
中图分类号
学科分类号
摘要
Integrity Measurement is an important method to detect compromised application, but under the virtualization environment traditional detection approaches have reflected some shortages. For example, the measurement software and measured objects are in the same operating system, so the measurement software is easily attacked. From the perspectives of security and performance, this paper proposes an integrity measurement mechanism based on virtual machine introspection-IVirt (Integrity for Virtualization). This mechanism obtains the needed memory data of virtual machine through address translation and content locating from outside of that virtual machine, thereby measuring the integrity of applications that are in the virtual machine is performed, so as to verify whether the applications are tampered with. The IVirt prototype was implemented in this paper adopting typical virtual machine monitor Xen. Compared with other work of the same kind, IVirt isolates the measurement software from the measured objects, preventing measurement software being attacked. On the other hand, address translation is employed to measure the runtime state, which is different from the method of using events intercepting, in order to reduce the performance overhead. The experimental results show that this method has the ability of detecting software modification, and it does not introduce high performance cost. ©, 2014, Science Press. All right reserved.
引用
收藏
相关论文
共 50 条
  • [31] COW-IMM: A Novel Integrity Measurement Method Based on Copy-on-Write for File in Virtual Machine
    Li, Shupan
    Xiao, Limin
    Qin, Guangjun
    Ruan, Li
    Su, Shubin
    IEEE ACCESS, 2018, 6 : 51776 - 51790
  • [32] VE-VMI: High-Performance Virtual Machine Introspection Based on Virtualization Exception
    Lutaa, Andrei
    Sebestyen, Gheorghe
    Tosa, Raul
    Colesa, Adrian
    2021 20TH INTERNATIONAL SYMPOSIUM ON PARALLEL AND DISTRIBUTED COMPUTING (ISPDC), 2021, : 73 - 80
  • [33] Vanguard: A Cache-Level Sensitive File Integrity Monitoring System in Virtual Machine Environment
    Shi, Bin
    Li, Bo
    Cui, Lei
    Ouyang, Liu
    IEEE ACCESS, 2018, 6 : 38567 - 38577
  • [34] SDN Based Secure Virtual Machine Migration In Cloud Environment
    Anitha, H. M.
    Jayarekha, P.
    2018 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2018, : 2270 - 2275
  • [35] High scalable and available server environment based on virtual machine
    Chen, Bin
    Xiao, Nong
    2006 INTERNATIONAL CONFERENCE ON HYBRID INFORMATION TECHNOLOGY, VOL 1, PROCEEDINGS, 2006, : 362 - +
  • [36] A high-performance real-time container file monitoring approach based on virtual machine introspection
    Tan, Kai
    Zhan, Dongyang
    Ye, Lin
    Zhang, Hongli
    Fang, Binxing
    Tian, Zhihong
    JOURNAL OF SUPERCOMPUTING, 2025, 81 (01):
  • [37] Javy:: Virtual environment for case-based teaching of Java']Java Virtual Machine
    Gómez-Martín, PP
    Gómez-Martín, MA
    González-Calero, PA
    KNOWLEDGE-BASED INTELLIGENT INFORMATION AND ENGINEERING SYSTEMS, PT 1, PROCEEDINGS, 2003, 2773 : 906 - 913
  • [38] Research On Resource Scheduling Mechanism Based On Virtual Machine Migration
    Fu, Tian
    Wang, Zhen
    2017 IEEE 2ND ADVANCED INFORMATION TECHNOLOGY, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (IAEAC), 2017, : 2091 - 2094
  • [39] A Balanced Virtual Machine Migration Mechanism based on Genetic Algorithm
    Abubakar, Muhammad
    Xu Youchang
    Yan Chengxin
    Chen Ningjiang
    PROCEEDINGS OF THE 2017 2ND INTERNATIONAL CONFERENCE ON MACHINERY, ELECTRONICS AND CONTROL SIMULATION (MECS 2017), 2017, 138 : 704 - 707
  • [40] A TRUST MECHANISM IN INTERNET-BASED VIRTUAL COMPUTING ENVIRONMENT
    Zhu, Chunge
    Liu, Xinran
    Yang, Yixian
    Zhang, Hong
    Xu, Qianhua
    2012 IEEE 2nd International Conference on Cloud Computing and Intelligent Systems (CCIS) Vols 1-3, 2012, : 449 - 453