Secure enforcement of isolation policy on multicore platforms with virtualization techniques

A number of virtualization based systems have been proposed in the literature as an effective measure against the adversaries with the kernel privilege. However, under a systematic analysis, such systems exhibit vulnerabilities that can still be exploited by such an attacker with the kernel privileg...

Full description

Saved in:
Bibliographic Details
Main Author: ZHAO, Siqi
Format: text
Language:English
Published: Institutional Knowledge at Singapore Management University 2018
Subjects:
Online Access:https://ink.library.smu.edu.sg/etd_coll/184
https://ink.library.smu.edu.sg/cgi/viewcontent.cgi?article=1184&context=etd_coll
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Singapore Management University
Language: English
id sg-smu-ink.etd_coll-1184
record_format dspace
spelling sg-smu-ink.etd_coll-11842019-05-17T08:14:40Z Secure enforcement of isolation policy on multicore platforms with virtualization techniques ZHAO, Siqi A number of virtualization based systems have been proposed in the literature as an effective measure against the adversaries with the kernel privilege. However, under a systematic analysis, such systems exhibit vulnerabilities that can still be exploited by such an attacker with the kernel privilege. The fundamental reason is that there is an inherent incompatibility between the tamper-proof requirement and the complete mediation requirement of the reference monitor model. The incompatibility manifests in the virtualization based systems in the form of a discrepancy between the enforcement capability demanded by the high-level policy and the one achievable through the system design approach mandated by the low-level hardware enforcement mechanism. 2018-08-01T07:00:00Z text application/pdf https://ink.library.smu.edu.sg/etd_coll/184 https://ink.library.smu.edu.sg/cgi/viewcontent.cgi?article=1184&context=etd_coll http://creativecommons.org/licenses/by-nc-nd/4.0/ Dissertations and Theses Collection (Open Access) eng Institutional Knowledge at Singapore Management University Policy Isolation Virtualization Multicore Databases and Information Systems
institution Singapore Management University
building SMU Libraries
continent Asia
country Singapore
Singapore
content_provider SMU Libraries
collection InK@SMU
language English
topic Policy
Isolation
Virtualization
Multicore
Databases and Information Systems
spellingShingle Policy
Isolation
Virtualization
Multicore
Databases and Information Systems
ZHAO, Siqi
Secure enforcement of isolation policy on multicore platforms with virtualization techniques
description A number of virtualization based systems have been proposed in the literature as an effective measure against the adversaries with the kernel privilege. However, under a systematic analysis, such systems exhibit vulnerabilities that can still be exploited by such an attacker with the kernel privilege. The fundamental reason is that there is an inherent incompatibility between the tamper-proof requirement and the complete mediation requirement of the reference monitor model. The incompatibility manifests in the virtualization based systems in the form of a discrepancy between the enforcement capability demanded by the high-level policy and the one achievable through the system design approach mandated by the low-level hardware enforcement mechanism.
format text
author ZHAO, Siqi
author_facet ZHAO, Siqi
author_sort ZHAO, Siqi
title Secure enforcement of isolation policy on multicore platforms with virtualization techniques
title_short Secure enforcement of isolation policy on multicore platforms with virtualization techniques
title_full Secure enforcement of isolation policy on multicore platforms with virtualization techniques
title_fullStr Secure enforcement of isolation policy on multicore platforms with virtualization techniques
title_full_unstemmed Secure enforcement of isolation policy on multicore platforms with virtualization techniques
title_sort secure enforcement of isolation policy on multicore platforms with virtualization techniques
publisher Institutional Knowledge at Singapore Management University
publishDate 2018
url https://ink.library.smu.edu.sg/etd_coll/184
https://ink.library.smu.edu.sg/cgi/viewcontent.cgi?article=1184&context=etd_coll
_version_ 1712300919250485248