Virtuoso: Narrowing the Semantic Gap in Virtual Machine Introspection

作者: Brendan Dolan-Gavitt , Tim Leek , Michael Zhivich , Jonathon Giffin , Wenke Lee

DOI: 10.1109/SP.2011.11

关键词:

摘要: … Although we believe Virtuoso represents a large step forward in narrowing the semantic gap, there are some fundamental limitations to our techniques and constructs that Virtuoso is not …

参考文章(27)
Wenke Lee, Monirul I. Sharif, Andrea Lanzi, K-Tracer: A System for Extracting Kernel Malware Behavior. network and distributed system security symposium. ,(2009)
William A. Arbaugh, Timothy Fraser, Nick L. Petroni, Jesus Molina, Copilot - a coprocessor-based kernel runtime integrity monitor usenix security symposium. pp. 13- 13 ,(2004)
Tal Garfinkel, Traps and Pitfalls: Practical Problems in System Call Interposition Based Security Tools. network and distributed system security symposium. ,(2003)
David Brumley, Thanassis Avgerinos, JongHyup Lee, TIE: Principled Reverse Engineering of Types in Binary Programs network and distributed system security symposium. ,(2011) , 10.1184/R1/6469466.V1
Juan Caballero, Noah M. Johnson, Stephen McCamant, Dawn Song, Binary Code Extraction and Interface Identification for Security Applications network and distributed system security symposium. ,(2009) , 10.21236/ADA538737
Fabrice Bellard, QEMU, a fast and portable dynamic translator usenix annual technical conference. pp. 41- 41 ,(2005)
Zhi Wang, Xuxian Jiang, Weidong Cui, Xinyuan Wang, Countering Persistent Kernel Rootkits through Systematic Hook Discovery recent advances in intrusion detection. pp. 21- 38 ,(2008) , 10.1007/978-3-540-87403-4_2
Edward W. Felten, Hovav Shacham, J. Alex Halderman, Brian Kantor, Ariel J. Feldman, Stephen Checkoway, Can DREs provide long-lasting security? the case of return-oriented programming and the AVC advantage conference on electronic voting technology workshop on trustworthy elections. pp. 6- 6 ,(2009)
Tal Garfinkel, Mendel Rosenblum, A Virtual Machine Introspection Based Architecture for Intrusion Detection. network and distributed system security symposium. ,(2003)
Ulrich Bayer, Paolo Milani Comparetti, Clemens Hlauschek, Christopher Kruegel, Engin Kirda, Scalable, behavior-based malware clustering network and distributed system security symposium. ,(2009)