Skip to main content

Research Repository

Advanced Search

Detection of malware and kernel-level rootkits in cloud computing environments

Win, Thu Yein; Tianfield, Huaglory; Mair, Quentin

Authors

Thu Yein Win

Huaglory Tianfield

Quentin Mair



Abstract

Cyberattacks targeted at virtualization infrastructure underlying cloud computing services has become increasingly sophisticated. This paper presents a novel malware and rookit detection system which protects the guests against different attacks. It combines system call monitoring and system call hashing on the guest kernel together with Support Vector Machines (SVM)-based external monitoring on the host. We demonstrate the effectiveness of our solution by evaluating it against well-known user-level malware as well as kernel-level rootkit attacks.

Presentation Conference Type Conference Paper (published)
Conference Name 2015 IEEE 2nd International Conference on Cyber Security and Cloud Computing
Start Date Nov 3, 2015
End Date Nov 5, 2015
Acceptance Date Sep 18, 2015
Online Publication Date Jan 7, 2016
Deposit Date May 12, 2021
Pages 295-300
Book Title 2015 IEEE 2nd International Conference on Cyber Security and Cloud Computing
ISBN 9781467392990
DOI https://doi.org/10.1109/CSCloud.2015.54
Public URL https://uwe-repository.worktribe.com/output/7360312