检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:王陆悠悠
机构地区:[1]上海交通大学电子通信工程系
出 处:《电子技术(上海)》2012年第4期13-16,共4页Electronic Technology
摘 要:随着网络技术的发展,网络恶意代码的越来越有攻击性,系统的安全漏洞往往导致数据丢失。虽然每天更新保护方法和软件,一些最近的rootkit,无形中仍然可以访问内核,是系统安全的新挑战。对系统安全的重点是如何保护受感染的操作系统上选定的进程。进程的保护和监控正越来越重要。在文章中,我们提出了一种基于硬件的虚拟化技术。它引入了一种新的机制虚拟机监视器(VMM)。和原始方法相比,它提供了一个超越传统的操作系统和处理器架构实施分级的保护域。With the development of network malicious code becomes more and more aggressive, and the existed security holes tend to lead the data loss. Though protection methods and software are updated day by day, some recent rootkits can still invisibly access kernel, and become new challenges for the system security. Process protection and monitoring are becoming more and more important for emerging networks and systems. In this paper, we present a new technique, which is based on hardware virtualization technology. It introduces a novel mechanism, that is located in Virtual Machine Monitor (VMM). This primitive offers an additional dimension of protection beyond the hierarchical protection domains, implemented by traditional operating systems and processor architectures. Our design has been fully implemented and used to protect a wide range of legacy process without any modification on Windows operating system.
分 类 号:TP391.9[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:18.227.228.218