• DocumentCode
    3722507
  • Title

    Detection of Malware and Kernel-Level Rootkits in Cloud Computing Environments

  • Author

    Thu Yein Win;Huaglory Tianfield;Quentin Mair

  • Author_Institution
    Cloud &
  • fYear
    2015
  • Firstpage
    295
  • Lastpage
    300
  • Abstract
    Cyberattacks targeted at virtualization infrastructure underlying cloud computing services has become increasingly sophisticated. This paper presents a novel malware and rookit detection system which protects the guests against different attacks. It combines system call monitoring and system call hashing on the guest kernel together with Support Vector Machines (SVM)-based external monitoring on the host. We demonstrate the effectiveness of our solution by evaluating it against well-known user-level malware as well as kernel-level rootkit attacks.
  • Keywords
    "Monitoring","Malware","Support vector machines","Cloud computing","Virtualization","Kernel"
  • Publisher
    ieee
  • Conference_Titel
    Cyber Security and Cloud Computing (CSCloud), 2015 IEEE 2nd International Conference on
  • Type

    conf

  • DOI
    10.1109/CSCloud.2015.54
  • Filename
    7371497