6533b860fe1ef96bd12c321c
RESEARCH PRODUCT
Hypervisor-Based White Listing of Executables
Amit ReshMichael KiperbergRoee LeonAsaf AlgawiAnat Anatey Leon ZabagNezer Jacob Zaidenbergsubject
operating systemsmicroprogrammingdatabasesvirtualisointiComputer Networks and CommunicationsComputer science0211 other engineering and technologiesListing (computer)02 engineering and technologycomputer.software_genre020204 information systemsMicrocode0202 electrical engineering electronic engineering information engineeringCode (cryptography)Overhead (computing)virtual machine monitorstietoturvaElectrical and Electronic Engineeringimage segmentation021110 strategic defence & security studieskäyttöjärjestelmätLinuxHypervisorcomputer.file_formatmonitoringOperating systemohjelmointiExecutableLawcomputerdescription
We describe an efficient system for ensuring code integrity of an operating system (OS), both its own code and application code. The proposed system can protect from an attacker who has full control over the OS kernel. An evaluation of the system's performance suggests the induced overhead is negligible. peerReviewed
year | journal | country | edition | language |
---|---|---|---|---|
2019-09-01 | IEEE Security & Privacy |