Towards a Tamper-Resistant Kernel Rootkit Detector

被引:0
|
作者
Quynh, Nguyen Anh [1 ]
Takefuji, Yoshiyasu [1 ]
机构
[1] Keio Univ, Grad Sch Media & Governance, Fujisawa, Kanagawa 2528520, Japan
关键词
Kernel Rootkit; Intrusion Detection; Xen Virtual Machine; Linux;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
A variety of tools and architectures have been developed to detect security violations to Operating System kernels. However, they all have fundamental flaw in the design so that they fail to discover kernel-level attack. Few hardware solutions have been proposed to address the outstanding problem, but unfortunately they are not widely accepted. This paper presents a software-based method to detect intrusion to kernel. The proposed tool named XenKIMONO, which is based on Xen Virtual Machine, is able to detect many kernel rootkits in virtual machines with small penalty to the system's performance. In contrast with the traditional approaches, XenKIMONO is isolated with the kernel being monitored, thus it can still function correctly even if the observed kernel is compromised. Moreover, XenKIMONO is flexible and easy to deploy as it absolutely does not require any modification to the monitored systems.
引用
收藏
页码:276 / 283
页数:8
相关论文
共 50 条
  • [31] PLASTIC MAGNET HOLDS TUMBLERS IN TAMPER-RESISTANT LOCK
    SODERHOL.L
    DESIGN NEWS, 1973, 28 (23) : 85 - 85
  • [33] StreamTo: Streaming content using a tamper-resistant token
    Cheng, JY
    Chong, CN
    Doumen, JM
    Etalle, S
    Hartel, PH
    Nikolaus, S
    SECURITY AND PRIVACY IN THE AGE OF UBIQUITOUS COMPUTING, 2005, 181 : 601 - 612
  • [34] Passive Design Technique for Tamper-Resistant Embedded System
    Anjum, Naveed
    Hammad, Saifullah
    Faheem, Muhammad
    PROCEEDINGS OF 2018 15TH INTERNATIONAL BHURBAN CONFERENCE ON APPLIED SCIENCES AND TECHNOLOGY (IBCAST), 2018, : 427 - 430
  • [35] FDA approves a more tamper-resistant formulation of OxyContin
    不详
    FORMULARY, 2010, 45 (05) : 166 - 167
  • [36] Tamper-Resistant Mobile Health Using Blockchain Technology
    Ichikawa, Daisuke
    Kashiyama, Makiko
    Ueno, Taro
    JMIR MHEALTH AND UHEALTH, 2017, 5 (07):
  • [37] A Tamper-Resistant Algorithm Using Blockchain for the Digital Tachograph
    Kim, Yongbae
    Back, Juyong
    Kim, Jongweon
    ELECTRONICS, 2021, 10 (05) : 1 - 19
  • [38] Tamper-Resistant Opioid Formulations in the Treatment of Acute Pain
    Steven D. Passik
    Advances in Therapy, 2014, 31 : 264 - 275
  • [39] Tamper-Resistant Corpus Retrieval Using Perceptual Hashing
    Hu, Die
    Hu, Weili
    TEHNICKI VJESNIK-TECHNICAL GAZETTE, 2024, 31 (04): : 1223 - 1231
  • [40] Tamper-resistant drugs cannot solve the opioid crisis
    Leece, Pamela
    Orkin, Aaron M.
    Kahan, Meldon
    CANADIAN MEDICAL ASSOCIATION JOURNAL, 2015, 187 (10) : 717 - 718