A novel VENOM attack identification mechanism in cloud virtualization environment
學年 106
學期 1
出版(發表)日期 2018-01-01
作品名稱 A novel VENOM attack identification mechanism in cloud virtualization environment
作品名稱(其他語言)
著者 Shih-Hao Chang; Cheick Abdoul-Kader
單位
出版者
著錄名稱、卷期、頁數 資訊安全通訊 14(1)
摘要 This paper investigates the security issue of virtualization in the cloud computing. We focus on how to identify the VENOM attack in the cloud-computing environment, and how to protect the hypervisor from this VENOM attack. Firstly, we have implemented VENOM vulnerability in the environment of QEMU/KVM and tried to identify its behaviors (action) in the cloud. Secondly, we also tried to protect the hypervisor, which is the most vulnerability part for virtualization environment. The proposed mechanism provides identification of the VENOM attack and lock the FDC port (0x3f5), which is responsible to send I/O command to the hypervisor.
關鍵字 VENOM;QEMU;Virtualization;I/O command;Malware Attack
語言 en_US
ISSN
期刊性質 國內
收錄於 EI
產學合作
通訊作者
審稿制度
國別 TWN
公開徵稿
出版型式 ,電子版
相關連結

機構典藏連結 ( http://tkuir.lib.tku.edu.tw:8080/dspace/handle/987654321/122537 )