Hypervisor based Memory Introspection: Challenges, Problems and Limitations

Andrei Lutas, Daniel Ticle, Octavian Cret

2017

Abstract

Hypervisor-based memory introspection is a well-known topic, in both academia and the industry. It is accepted that this technique brings great advantages from a security perspective, but it is known, as well, that this comes at greater implementation complexity and performance penalty. While the most obvious challenges, such as the semantic gap, have been greatly discussed in the literature, we aim to elaborate on the engineering and implementation challenges encountered while developing a hypervisor-based memory introspection solution and to offer theoretical and practical solutions for them.

Download


Paper Citation


in Harvard Style

Lutas A., Ticle D. and Cret O. (2017). Hypervisor based Memory Introspection: Challenges, Problems and Limitations . In Proceedings of the 3rd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP, ISBN 978-989-758-209-7, pages 285-294. DOI: 10.5220/0006125802850294

in Bibtex Style

@conference{icissp17,
author={Andrei Lutas and Daniel Ticle and Octavian Cret},
title={Hypervisor based Memory Introspection: Challenges, Problems and Limitations},
booktitle={Proceedings of the 3rd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP,},
year={2017},
pages={285-294},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0006125802850294},
isbn={978-989-758-209-7},
}


in EndNote Style

TY - CONF
JO - Proceedings of the 3rd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP,
TI - Hypervisor based Memory Introspection: Challenges, Problems and Limitations
SN - 978-989-758-209-7
AU - Lutas A.
AU - Ticle D.
AU - Cret O.
PY - 2017
SP - 285
EP - 294
DO - 10.5220/0006125802850294