Hypervisor-based Cloud Intrusion Detection System

被引:0
|
作者
Nikolai, Jason [1 ]
Wang, Yong [1 ]
机构
[1] Dakota State Univ, Coll Business & Informat Syst, Madison, SD 57042 USA
关键词
Cloud Computing; intrusion detection; hypervisor;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Shared resources are an essential part of cloud computing. Virtualization and multi-tenancy provide a number of advantages for increasing resource utilization and for providing on demand elasticity. However, these cloud features also raise many security concerns related to cloud computing resources. In this paper, we propose an architecture and approach for leveraging the virtualization technology at the core of cloud computing to perform intrusion detection security using hypervisor performance metrics. Through the use of virtual machine performance metrics gathered from hypervisors, such as packets transmitted/received, block device read/write requests, and CPU utilization, we demonstrate and verify that suspicious activities can be profiled without detailed knowledge of the operating system running within the virtual machines. The proposed hypervisor-based cloud intrusion detection system does not require additional software installed in virtual machines and has many advantages compared to host-based and network based intrusion detection systems which can complement these traditional approaches to intrusion detection.
引用
收藏
页码:989 / 993
页数:5
相关论文
共 50 条
  • [41] Towards Hierarchical Scheduling of Dependent Systems with Hypervisor-based Virtualization
    Jatzkowski, Jan
    Kreutz, Marcio
    Rettberg, Achim
    PROCEEDINGS OF THE 2015 ELECTRONIC SYSTEM LEVEL SYNTHESIS CONFERENCE (ESLSYN), 2015, : 28 - 33
  • [42] A tiny hypervisor-based trusted geolocation framework with minimized TPM operations
    Park, Sungjin
    Won, Jong-Jin
    Yoon, Jaenam
    Kim, Kyong Hoon
    Han, Taisook
    JOURNAL OF SYSTEMS AND SOFTWARE, 2016, 122 : 202 - 214
  • [43] The Research of Intrusion Detection System Based on ANN on Cloud Platform
    Jiang, Xuesong
    Wei, Xiumei
    Geng, Yushui
    INFORMATION TECHNOLOGY APPLICATIONS IN INDUSTRY, PTS 1-4, 2013, 263-266 : 2962 - 2965
  • [44] A Cloud-Based Intrusion Detection System for Android Smartphones
    Khune, Rohit S.
    Thangakumar, J.
    2012 INTERNATIONAL CONFERENCE ON RADAR, COMMUNICATION AND COMPUTING (ICRCC), 2012, : 180 - 184
  • [45] Lightweight and Efficient Hypervisor-Based Dynamic Binary Instrumentation and Analysis Method
    Pan, Jiaye
    Yi, Zhuang
    Xue-Jian, Zhao
    Sun, Binglin
    IEEE ACCESS, 2020, 8 : 164593 - 164610
  • [46] PSI-NetVisor: Program semantic aware intrusion detection at network and hypervisor layer in cloud
    Mishra, Preeti
    Pilli, Emmanuel S.
    Varadharajan, Vijay
    Tupakula, Udaya
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2017, 32 (04) : 2909 - 2921
  • [47] Hypervisor-Based Target Deployment Strategies for Time Predictability in Model-Based Development
    Schade, Florian
    Doerr, Tobias
    Becker, Jurgen
    2022 IEEE 35TH INTERNATIONAL SYSTEM-ON-CHIP CONFERENCE (IEEE SOCC 2022), 2022, : 285 - 286
  • [48] Hypervisor-Based Multicore Feedback Control of Mixed-Criticality Systems
    Crespo, Alfons
    Balbastre, Patricia
    Simo, Jose
    Coronel, Javier
    Gracia Perez, Daniel
    Bonnot, Philippe
    IEEE ACCESS, 2018, 6 : 50627 - 50640
  • [49] Deep Reinforcement Learning based Intrusion Detection System for Cloud Infrastructure
    Sethi, Kamalakanta
    Kumar, Rahul
    Prajapati, Nishant
    Bera, Padmalochan
    2020 INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2020,
  • [50] Design of the Network Security Intrusion Detection System Based on the Cloud Computing
    Di, Meng
    CYBER SECURITY INTELLIGENCE AND ANALYTICS, 2020, 928 : 68 - 73