Title :
Hardware virtualization based security solution for embedded systems
Author :
Lukacs, Sandor ; Lutas, Andrei V. ; Lutas, Dan H. ; Sebestyen, Gheorghe
Author_Institution :
Bitdefender, Cluj-Napoca, Romania
Abstract :
We describe the implementation and the evaluation of a hypervisor level, hardware-enforced security solution suitable for the latest embedded platforms. Our solution is based on thin layer bare-metal hypervisor, a memory introspection engine and is validated on Silvermont microarchitecture based Intel x86 processors, running Windows. The approach is well suited to enhance the security of many POS and industrial embedded devices. We also present various kinds of attacks our solution defends against, and several remaining limitations.
Keywords :
embedded systems; invasive software; virtualisation; Intel x86 processors; POS; Silvermont microarchitecture; Windows; attacks; embedded platforms; embedded systems; hardware virtualization based security solution; hardware-enforced security solution; hypervisor level; industrial embedded devices; malware; memory introspection engine; thin layer bare-metal hypervisor; Embedded systems; Hardware; Kernel; Security; Virtual machine monitors; Virtualization; Silvermont; embedded; hypervisor; introspection; malware; security; virtualization;
Conference_Titel :
Automation, Quality and Testing, Robotics, 2014 IEEE International Conference on
Conference_Location :
Cluj-Napoca
Print_ISBN :
978-1-4799-3731-8
DOI :
10.1109/AQTR.2014.6857879