Secure enforcement of isolation policy on multicore platforms with virtualization techniques
A number of virtualization based systems have been proposed in the literature as an effective measure against the adversaries with the kernel privilege. However, under a systematic analysis, such systems exhibit vulnerabilities that can still be exploited by such an attacker with the kernel privileg...
Saved in:
Main Author: | |
---|---|
Format: | text |
Language: | English |
Published: |
Institutional Knowledge at Singapore Management University
2018
|
Subjects: | |
Online Access: | https://ink.library.smu.edu.sg/etd_coll/184 https://ink.library.smu.edu.sg/cgi/viewcontent.cgi?article=1184&context=etd_coll |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Institution: | Singapore Management University |
Language: | English |
id |
sg-smu-ink.etd_coll-1184 |
---|---|
record_format |
dspace |
spelling |
sg-smu-ink.etd_coll-11842019-05-17T08:14:40Z Secure enforcement of isolation policy on multicore platforms with virtualization techniques ZHAO, Siqi A number of virtualization based systems have been proposed in the literature as an effective measure against the adversaries with the kernel privilege. However, under a systematic analysis, such systems exhibit vulnerabilities that can still be exploited by such an attacker with the kernel privilege. The fundamental reason is that there is an inherent incompatibility between the tamper-proof requirement and the complete mediation requirement of the reference monitor model. The incompatibility manifests in the virtualization based systems in the form of a discrepancy between the enforcement capability demanded by the high-level policy and the one achievable through the system design approach mandated by the low-level hardware enforcement mechanism. 2018-08-01T07:00:00Z text application/pdf https://ink.library.smu.edu.sg/etd_coll/184 https://ink.library.smu.edu.sg/cgi/viewcontent.cgi?article=1184&context=etd_coll http://creativecommons.org/licenses/by-nc-nd/4.0/ Dissertations and Theses Collection (Open Access) eng Institutional Knowledge at Singapore Management University Policy Isolation Virtualization Multicore Databases and Information Systems |
institution |
Singapore Management University |
building |
SMU Libraries |
continent |
Asia |
country |
Singapore Singapore |
content_provider |
SMU Libraries |
collection |
InK@SMU |
language |
English |
topic |
Policy Isolation Virtualization Multicore Databases and Information Systems |
spellingShingle |
Policy Isolation Virtualization Multicore Databases and Information Systems ZHAO, Siqi Secure enforcement of isolation policy on multicore platforms with virtualization techniques |
description |
A number of virtualization based systems have been proposed in the literature as an effective measure against the adversaries with the kernel privilege. However, under a systematic analysis, such systems exhibit vulnerabilities that can still be exploited by such an attacker with the kernel privilege. The fundamental reason is that there is an inherent incompatibility between the tamper-proof requirement and the complete mediation requirement of the reference monitor model. The incompatibility manifests in the virtualization based systems in the form of a discrepancy between the enforcement capability demanded by the high-level policy and the one achievable through the system design approach mandated by the low-level hardware enforcement mechanism. |
format |
text |
author |
ZHAO, Siqi |
author_facet |
ZHAO, Siqi |
author_sort |
ZHAO, Siqi |
title |
Secure enforcement of isolation policy on multicore platforms with virtualization techniques |
title_short |
Secure enforcement of isolation policy on multicore platforms with virtualization techniques |
title_full |
Secure enforcement of isolation policy on multicore platforms with virtualization techniques |
title_fullStr |
Secure enforcement of isolation policy on multicore platforms with virtualization techniques |
title_full_unstemmed |
Secure enforcement of isolation policy on multicore platforms with virtualization techniques |
title_sort |
secure enforcement of isolation policy on multicore platforms with virtualization techniques |
publisher |
Institutional Knowledge at Singapore Management University |
publishDate |
2018 |
url |
https://ink.library.smu.edu.sg/etd_coll/184 https://ink.library.smu.edu.sg/cgi/viewcontent.cgi?article=1184&context=etd_coll |
_version_ |
1712300919250485248 |