Detection of Malware and Kernel-level Rootkits in Cloud Computing Environments

被引:8
|
作者
Win, Thu Yein [1 ]
Tianfield, Huaglory [1 ]
Mair, Quentin [1 ]
机构
[1] Glasgow Caledonian Univ, Sch Engn & Built Environm, Cloud & Data Lab, Glasgow G4 0BA, Lanark, Scotland
关键词
virtualization security; cloud security; malware detection; rootkit detection; support vector machine; virtual machine introspection;
D O I
10.1109/CSCloud.2015.54
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyberattacks targeted at virtualization infrastructure underlying cloud computing services has become increasingly sophisticated. This paper presents a novel malware and rookit detection system which protects the guests against different attacks. It combines system call monitoring and system call hashing on the guest kernel together with Support Vector Machines (SVM)-based external monitoring on the host. We demonstrate the effectiveness of our solution by evaluating it against well-known user-level malware as well as kernel-level rootkit attacks.
引用
收藏
页码:295 / 300
页数:6
相关论文
共 50 条
  • [21] MOBDroid: An Intelligent Malware Detection System for Improved Data Security in Mobile Cloud Computing Environments
    Ogwara, Noah Oghenefego
    Petrova, Krassie
    Yang, Mee Loong Bobby
    2020 30TH INTERNATIONAL TELECOMMUNICATION NETWORKS AND APPLICATIONS CONFERENCE (ITNAC), 2020, : 121 - 126
  • [22] A Review on Learning-based Detection Approaches of the Kernel-level Rootkit
    Nadim, Mohammad
    Akopian, David
    Lee, Wonjun
    2021 7TH INTERNATIONAL CONFERENCE ON ENGINEERING AND EMERGING TECHNOLOGIES (ICEET 2021), 2021, : 357 - 362
  • [23] Protocol boosters: A kernel-level implementation
    Marcus, W
    McAuley, T
    Raleigh, T
    GLOBECOM 98: IEEE GLOBECOM 1998 - CONFERENCE RECORD, VOLS 1-6: THE BRIDGE TO GLOBAL INTEGRATION, 1998, : 1619 - 1623
  • [24] An Android Malware Detection System Based on Cloud Computing
    Cui, Shujuan
    Sun, Gengxin
    Bin, Sheng
    Zhou, Xicheng
    3RD INTERNATIONAL CONFERENCE ON APPLIED ENGINEERING, 2016, 51 : 691 - 696
  • [25] Intelligent Malware Detection Integrating Cloud and Fog Computing
    Paiva, Carlos H.
    Nascimento, Mateus F.
    Rodrigues, Renan L.
    Gomes, Rafael L.
    PROCEEDINGS OF THE 2024 LATIN AMERICA NETWORKING CONFERENCE, LANC 2024, 2024, : 26 - 31
  • [26] Analysis of Detection and Prevention of Malware in Cloud Computing Environment
    Bedi, Anav
    Pandey, Nitin
    Khatri, Sunil Kumar
    PROCEEDINGS 2019 AMITY INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE (AICAI), 2019, : 918 - 921
  • [27] Study of kernel-level concurrent communication
    School of Computer Science and Engineering, Univ. of Electron. Sci./Tech.of China, Chengdu 610054, China
    Dianzi Keji Diaxue Xuebao, 2006, 4 (524-527):
  • [28] Detection and Elimination of Spyware and Ransomware by Intercepting Kernel-Level System Routines
    Javaheri, Danial
    Hosseinzadeh, Mehdi
    Rahmani, Amir Masoud
    IEEE ACCESS, 2018, 6 : 78321 - 78332
  • [29] Ranker: Early Ransomware Detection Through Kernel-Level Behavioral Analysis
    Zhang, Huan
    Zhao, Lixin
    Yu, Aimin
    Cai, Lijun
    Meng, Dan
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 6113 - 6127
  • [30] Experiences in implementing a kernel-level DRM controller
    Arnab, Alapan
    Paulse, Marlon
    Bennett, Duncan
    Hutchison, Andrew
    AXMEDIS 2007: THIRD INTERNATIONAL CONFERENCE ON AUTOMATED PRODUCTION OF CROSS MEDIA CONTENT FOR MULTI-CHANNEL DISTRIBUTION, PROCEEDINGS, 2007, : 39 - 46