Corpus ID: 6136159

A Virtual Machine Introspection Based Architecture for Intrusion Detection

@inproceedings{Garfinkel2003AVM,
  title={A Virtual Machine Introspection Based Architecture for Intrusion Detection},
  author={Tal Garfinkel and M. Rosenblum},
  booktitle={NDSS},
  year={2003}
}
Today’s architectures for intrusion detection force the IDS designer to make a difficult choice. [...] Key Method We achieve this through the use of a virtual machine monitor. Using this approach allows us to isolate the IDS from the monitored host but still retain excellent visibility into the host’s state. The VMM also offers us the unique ability to completely mediate interactions between the host software and the underlying hardware. We present a detailed study of our architecture, including Livewire, a…Expand
Hypervisor-based Intrusion Detection
VNIDA: Building an IDS Architecture Using VMM-Based Non-Intrusive Approach
VNIDS: A virtual machine-based network intrusion detection system
Network performance testing on VM based autonomous web server
Building Trustworthy Intrusion Detection through VM Introspection
Building Trustworthy Intrusion Detection through VM Introspection
  • F. Baiardi, D. Sgandurra
  • Computer Science
  • Third International Symposium on Information Assurance and Security
  • 2007
Protecting host-based intrusion detectors through virtual machines
Introspecting for RSA Key Material to Assist Intrusion Detection
...
1
2
3
4
5
...

References

SHOWING 1-10 OF 63 REFERENCES
Insertion, Evasion, and Denial of Service: Eluding Network Intrusion Detection
Detecting and countering system intrusions using software wrappers
Intrusion detection via static analysis
Bro: a system for detecting network intruders in real-time
  • V. Paxson
  • Computer Science
  • Comput. Networks
  • 1998
Scale and performance in the Denali isolation kernel
A Retrospective on the VAX VMM Security Kernel
Intrusion Detection Using Sequences of System Calls
When Virtual Is Better Than Real
Intrusion Detection Using Variable-Length Audit Trail Patterns
...
1
2
3
4
5
...