DocumentCode :
3667807
Title :
Hypervisor and virtual machine dependent Intrusion Detection and Prevention System for virtualized cloud environment
Author :
Ajay Kumara M.A; Jaidhar C.D
Author_Institution :
Department of Information Technology, National Institute of Technology Karnataka, Surathkal, Mangalore, India
fYear :
2015
fDate :
5/1/2015 12:00:00 AM
Firstpage :
28
Lastpage :
33
Abstract :
Cloud Computing enabled by virtualization technology exhibits revolutionary change in IT Infrastructure. Hypervisor is a pillar of virtualization and it allows sharing of resources to virtual machines. Vulnerabilities present in virtual machine leveraged by an attacker to launch the advanced persistent attacks such as stealthy rootkit, Trojan, Denial of Service (DoS) and Distributed Denial of Service (DDoS) attack etc. Virtual Machines are prime target for malignant cloud user or an attacker to launch attacks as they are easily available for rent from Cloud Service Provider (CSP). Attacks on virtual machine can disrupt the normal operation of cloud infrastructure. In order to secure the virtual environment, defence mechanism is highly imperative at each virtual machine to identify the attacks occurring at virtual machine in timely manner. This work proposes In-and-Out-of-the-Box Virtual Machine and Hypervisor based Intrusion Detection and Prevention System for virtualized environment to ensure robust state of the virtual machine by detecting followed by eradicating rootkits as well as other attacks. We conducted experiments using popular open source Host based Intrusion Detection System (HIDS) called Open Source SECurity Event Correlator (OSSEC). Both Linux and windows based rootkits, DoS attack, Files integrity verification test are conducted and they are successfully detected by OSSEC.
Keywords :
"Virtual machining","Virtual machine monitors","Intrusion detection","Kernel","Computer crime","Databases"
Publisher :
ieee
Conference_Titel :
Telematics and Future Generation Networks (TAFGEN), 2015 1st International Conference on
Type :
conf
DOI :
10.1109/TAFGEN.2015.7289570
Filename :
7289570
Link To Document :
بازگشت