메뉴 건너뛰기




Volumn , Issue , 2011, Pages 297-312

Virtuoso: Narrowing the semantic gap in virtual machine introspection

Author keywords

[No Author keywords available]

Indexed keywords

INTRUSION DETECTION; NETWORK SECURITY; SEMANTICS;

EID: 80051981742     PISSN: 10816011     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.1109/SP.2011.11     Document Type: Conference Paper
Times cited : (260)

References (34)
  • 10
    • 85180527583 scopus 로고    scopus 로고
    • Traps and pitfalls: Practical problems in in system call interposition based security tools
    • San Diego, CA
    • T. Garfinkel. Traps and pitfalls: Practical problems in in system call interposition based security tools. In Network and Distributed Systems Security Symposium (NDSS), San Diego, CA, 2003.
    • (2003) Network and Distributed Systems Security Symposium (NDSS)
    • Garfinkel, T.1
  • 12
    • 85177685684 scopus 로고    scopus 로고
    • Haiku OS project. http://haiku-os.org/.
  • 13
    • 77950853188 scopus 로고    scopus 로고
    • Stealthy malware detection through VMM-based "out-of-the-box," semantic view reconstruction
    • Alexandria, VA
    • X. Jiang, D. Xu, and X. Wang. Stealthy malware detection through VMM-based "out-of-the-box" semantic view reconstruction. In ACM Computer and Communications Security (CCS), Alexandria, VA, 2007.
    • (2007) ACM Computer and Communications Security (CCS)
    • Jiang, X.1    Xu, D.2    Wang, X.3
  • 22
    • 14344262813 scopus 로고    scopus 로고
    • Obfuscation of executable code to improve resistance to static disassembly
    • Washington, D.C
    • C. Linn and S. Debray. Obfuscation of executable code to improve resistance to static disassembly. In ACM Computer and Communications Security (CCS), Washington, D.C., 2003.
    • (2003) ACM Computer and Communications Security (CCS)
    • Linn, C.1    Debray, S.2
  • 23
    • 85177690425 scopus 로고    scopus 로고
    • Microsoft Corporation. RtlAllocateHeap on MSDN. http://msdn.microsoft. com/en-us/library/ff552108(VS.85).aspx.
    • RtlAllocateHeap on MSDN
  • 24
    • 84874245230 scopus 로고    scopus 로고
    • Microsoft Corporation. Windows research kernel. http://www.microsoft.com/ resources/sharedsource/windowsacademic/researchkernelkit.mspx.
    • Windows Research Kernel
  • 25
    • 85177674685 scopus 로고    scopus 로고
    • Mission Critical Linux. Core analysis suite (crash). http://www. missioncriticallinux.com/projects/crash/.
    • Core Analysis Suite (crash)
  • 29
    • 77952351839 scopus 로고    scopus 로고
    • The geometry of innocent flesh on the bone: Return-into-libc without function calls (on the x86)
    • Alexandria, VA
    • H. Shacham. The geometry of innocent flesh on the bone: return-into-libc without function calls (on the x86). In ACM Computer and Communications Security (CCS), Alexandria, VA, 2007.
    • (2007) ACM Computer and Communications Security (CCS)
    • Shacham, H.1
  • 31
    • 80052013311 scopus 로고    scopus 로고
    • Tamper-resistant, application-aware blocking of malicious network connections
    • A. Srivastava and J. Giffin. Tamper-resistant, application-aware blocking of malicious network connections. Recent Advances in Intrusion Detection, 2008.
    • (2008) Recent Advances in Intrusion Detection
    • Srivastava, A.1    Giffin, J.2
  • 33
    • 79960481357 scopus 로고    scopus 로고
    • Countering persistent kernel rootkits through systematic hook discovery
    • Cambridge, MA
    • Z. Wang, X. Jiang, W. Cui, and X. Wang. Countering persistent kernel rootkits through systematic hook discovery. In Recent Advances in Intrusion Detection, Cambridge, MA, 2008.
    • (2008) Recent Advances in Intrusion Detection
    • Wang, Z.1    Jiang, X.2    Cui, W.3    Wang, X.4
  • 34
    • 34047110218 scopus 로고    scopus 로고
    • Toward automated dynamic malware analysis using CWSandbox
    • March
    • C. Willems, T. Holz, and F. Freiling. Toward automated dynamic malware analysis using CWSandbox. IEEE Security & Privacy, 5(2), March 2007.
    • (2007) IEEE Security & Privacy , vol.5 , Issue.2
    • Willems, C.1    Holz, T.2    Freiling, F.3


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.