Hypervisor-based Cloud Intrusion Detection System

被引:0
|
作者
Nikolai, Jason [1 ]
Wang, Yong [1 ]
机构
[1] Dakota State Univ, Coll Business & Informat Syst, Madison, SD 57042 USA
关键词
Cloud Computing; intrusion detection; hypervisor;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Shared resources are an essential part of cloud computing. Virtualization and multi-tenancy provide a number of advantages for increasing resource utilization and for providing on demand elasticity. However, these cloud features also raise many security concerns related to cloud computing resources. In this paper, we propose an architecture and approach for leveraging the virtualization technology at the core of cloud computing to perform intrusion detection security using hypervisor performance metrics. Through the use of virtual machine performance metrics gathered from hypervisors, such as packets transmitted/received, block device read/write requests, and CPU utilization, we demonstrate and verify that suspicious activities can be profiled without detailed knowledge of the operating system running within the virtual machines. The proposed hypervisor-based cloud intrusion detection system does not require additional software installed in virtual machines and has many advantages compared to host-based and network based intrusion detection systems which can complement these traditional approaches to intrusion detection.
引用
收藏
页码:989 / 993
页数:5
相关论文
共 50 条
  • [21] Towards Certifiable Adaptive Reservations for Hypervisor-based Virtualization
    Groesbrink, Stefan
    Almeida, Luis
    de Sousa, Mario
    Petters, Stefan M.
    2014 IEEE 20TH REAL-TIME AND EMBEDDED TECHNOLOGY AND APPLICATIONS SYMPOSIUM (RTAS), 2014, : 13 - 24
  • [22] DLP-Visor: A Hypervisor-based Data Leakage Prevention System
    Amit, Guy
    Yeshooroon, Amir
    Kiperberg, Michael
    Zaidenberg, Nezer J.
    ICISSP: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2021, : 416 - 423
  • [23] Dynamic Malware Analysis Using IntroVirt: a Modified Hypervisor-Based System
    White, Joshua S.
    Pape, Stephen R.
    Meily, Adam T.
    Gloo, Richard M.
    CYBER SENSING 2013, 2013, 8757
  • [24] Cloud Intrusion Detection System Based on SVM
    Alheeti K.M.A.
    Lateef A.A.A.
    Alzahrani A.
    Imran A.
    Al Dosary D.
    International Journal of Interactive Mobile Technologies, 2023, 17 (11) : 101 - 114
  • [25] HyperIO: A Hypervisor-Based Framework for Secure IO
    Kiperberg, Michael
    Zaidenberg, Nezer Jacob
    APPLIED SCIENCES-BASEL, 2023, 13 (09):
  • [26] HIMA: A Hypervisor-Based Integrity Measurement Agent
    Azab, Ahmed M.
    Ning, Peng
    Sezer, Emre C.
    Zhang, Xiaolan
    25TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, 2009, : 461 - +
  • [27] A Cloud Based Network Intrusion Detection System
    You, Li
    Wang, Zhanyong
    TEHNICKI VJESNIK-TECHNICAL GAZETTE, 2022, 29 (03): : 987 - 992
  • [28] Hypervisor Based Anomaly Detection System in Cloud Computing Using ANFIS
    Pandeeswari, N.
    Karuppathal, R.
    JOURNAL OF INTERNET TECHNOLOGY, 2017, 18 (06): : 1335 - 1344
  • [29] The Threat of Virtualization: Hypervisor-Based Rootkits on the ARM Architecture
    Buhren, Robert
    Vetter, Julian
    Nordholz, Jan
    INFORMATION AND COMMUNICATIONS SECURITY, ICICS 2016, 2016, 9977 : 376 - 391
  • [30] A Survey on Hypervisor-Based Monitoring: Approaches, Applications, and Evolutions
    Bauman, Erick
    Ayoade, Gbadebo
    Lin, Zhiqiang
    ACM COMPUTING SURVEYS, 2015, 48 (01)