• DocumentCode
    2976545
  • Title

    Fingerprinting large data sets through memory de-duplication technique in virtual machines

  • Author

    Owens, Rodney ; Wang, Weichao

  • Author_Institution
    Dept. of SIS, UNC Charlotte, Charlotte, NC, USA
  • fYear
    2011
  • fDate
    7-10 Nov. 2011
  • Firstpage
    1363
  • Lastpage
    1368
  • Abstract
    Because of intellectual property, user privacy, and several other reasons, many scientific and military projects choose to hide the information about the data sets that they are using for analysis and computation. Attackers have designed various mechanisms to compromise the operating system or database management system to steal such information. In this paper, we propose a non-interactive mechanism to identify the data sets in use in a cloud computing environment when the virtual machine (VM) hypervisors adopt the memory de-duplication technique. Specifically, when multiple memory pages with the same contents occupy only one physical page, their reading and writing access delay will demonstrate some special properties. We use the access delay of the memory pages that are unique to some specific data sets to derive out whether or not our VM instance is accessing the same data sets as the target of the attack. The experiment results on a widely used scientific analysis software package ParaView demonstrate the practicability of the attack. We also discuss the mechanisms to defend against such attacks.
  • Keywords
    cloud computing; data privacy; database management systems; industrial property; operating systems (computers); security of data; virtual machines; ParaView; cloud computing environment; database management system; intellectual property; large data set fingerprinting; memory deduplication technique; memory pages; military projects; noninteractive mechanism; operating system; reading access delay; scientific analysis software package; user privacy; virtual machines; writing access delay; Delay; Operating systems; Random access memory; Virtual machine monitors; Virtual machining; Writing;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    MILITARY COMMUNICATIONS CONFERENCE, 2011 - MILCOM 2011
  • Conference_Location
    Baltimore, MD
  • ISSN
    2155-7578
  • Print_ISBN
    978-1-4673-0079-7
  • Type

    conf

  • DOI
    10.1109/MILCOM.2011.6127494
  • Filename
    6127494