DocumentCode
3722507
Title
Detection of Malware and Kernel-Level Rootkits in Cloud Computing Environments
Author
Thu Yein Win;Huaglory Tianfield;Quentin Mair
Author_Institution
Cloud &
fYear
2015
Firstpage
295
Lastpage
300
Abstract
Cyberattacks targeted at virtualization infrastructure underlying cloud computing services has become increasingly sophisticated. This paper presents a novel malware and rookit detection system which protects the guests against different attacks. It combines system call monitoring and system call hashing on the guest kernel together with Support Vector Machines (SVM)-based external monitoring on the host. We demonstrate the effectiveness of our solution by evaluating it against well-known user-level malware as well as kernel-level rootkit attacks.
Keywords
"Monitoring","Malware","Support vector machines","Cloud computing","Virtualization","Kernel"
Publisher
ieee
Conference_Titel
Cyber Security and Cloud Computing (CSCloud), 2015 IEEE 2nd International Conference on
Type
conf
DOI
10.1109/CSCloud.2015.54
Filename
7371497
Link To Document