Hypervisor-based Cloud Intrusion Detection System

被引:0
|
作者
Nikolai, Jason [1 ]
Wang, Yong [1 ]
机构
[1] Dakota State Univ, Coll Business & Informat Syst, Madison, SD 57042 USA
关键词
Cloud Computing; intrusion detection; hypervisor;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Shared resources are an essential part of cloud computing. Virtualization and multi-tenancy provide a number of advantages for increasing resource utilization and for providing on demand elasticity. However, these cloud features also raise many security concerns related to cloud computing resources. In this paper, we propose an architecture and approach for leveraging the virtualization technology at the core of cloud computing to perform intrusion detection security using hypervisor performance metrics. Through the use of virtual machine performance metrics gathered from hypervisors, such as packets transmitted/received, block device read/write requests, and CPU utilization, we demonstrate and verify that suspicious activities can be profiled without detailed knowledge of the operating system running within the virtual machines. The proposed hypervisor-based cloud intrusion detection system does not require additional software installed in virtual machines and has many advantages compared to host-based and network based intrusion detection systems which can complement these traditional approaches to intrusion detection.
引用
收藏
页码:989 / 993
页数:5
相关论文
共 50 条
  • [1] Design of Hypervisor-based Integrated Intrusion Detection System in Cloud Computing Environment
    Wang, Chih-Hung
    Chen, Xuan-Liang
    INTELLIGENT SYSTEMS AND APPLICATIONS (ICS 2014), 2015, 274 : 972 - 981
  • [2] Hypervisor-based cloud intrusion detection through online multivariate statistical change tracking
    Aldribi, Abdulaziz
    Traore, Issa
    Moa, Belaid
    Nwamuo, Onyekachi
    COMPUTERS & SECURITY, 2020, 88
  • [3] Cloud security in the age of adaptive adversaries: A game theoretic approach to hypervisor-based intrusion detection
    Sadia
    Saadat, Ahsan
    Faheem, Yasir
    Abaid, Zainab
    Fraz, Muhammad Moazam
    Journal of Systems Architecture, 2024, 156
  • [4] Reinforcement Learning Driven Self-Adaptation in Hypervisor-Based Cloud Intrusion Detection Systems (RLDAC-IDS)
    Qaffas, Alaa A.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2024, 15 (07) : 448 - 460
  • [5] Network and hypervisor-based attacks in cloud computing environments
    Montasari, Reza
    Macdonald, Stuart
    Hosseinian-Far, Amin
    Carroll, Fiona
    Daneshkhah, Alireza
    INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2021, 13 (06) : 630 - 651
  • [6] A Bayesian Game-Theoretic Intrusion Detection System for Hypervisor-Based Software Defined Networks in Smart Grids
    Niazi, Rumaisa Aimen
    Faheem, Yasir
    IEEE ACCESS, 2019, 7 : 88656 - 88672
  • [7] Hypervisor-Based Protection of Code
    Kiperberg, Michael
    Leon, Roee
    Resh, Amit
    Algawi, Asaf
    Zaidenberg, Nezer J.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2019, 14 (08) : 2203 - 2216
  • [8] Task Grain Scheduling for Hypervisor-Based Embedded System
    Kinebuchi, Yuki
    Sugaya, Midori
    Oikawa, Shuichi
    Nakajima, Tatsuo
    HPCC 2008: 10TH IEEE INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS, PROCEEDINGS, 2008, : 190 - +
  • [9] Laccolith: Hypervisor-Based Adversary Emulation with Anti-Detection
    Orbinato V.
    Feliciano M.C.
    Cotroneo D.
    Natella R.
    IEEE Transactions on Dependable and Secure Computing, 2024, 21 (06) : 1 - 13
  • [10] Block-Level Storage Caching for Hypervisor-Based Cloud Nodes
    Tak, Byungchul
    Tang, Chunqiang
    Chang, Rong N.
    Seo, Euiseong
    IEEE ACCESS, 2021, 9 : 88724 - 88736