Classifying malware attacks in IaaS cloud environments

被引:30
|
作者
Rakotondravony, Noelle [1 ]
Taubmann, Benjamin [1 ]
Mandarawi, Waseem [1 ]
Weishaupl, Eva [2 ]
Xu, Peng [3 ]
Kolosnjaji, Bojan [3 ]
Protsenko, Mykolai [4 ]
de Meer, Hermann [1 ]
Reiser, Hans P. [1 ]
机构
[1] Univ Passau, Passau, Germany
[2] Univ Regensburg, Regensburg, Germany
[3] Tech Univ Munich, Munich, Germany
[4] Fraunhofer AISEC, Garching, Germany
来源
JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS | 2017年 / 6卷
关键词
IaaS; Malware; VM; Classification; VIRTUAL MACHINE INTROSPECTION; SECURITY ISSUES;
D O I
10.1186/s13677-017-0098-8
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the last few years, research has been motivated to provide a categorization and classification of security concerns accompanying the growing adaptation of Infrastructure as a Service (IaaS) clouds. Studies have been motivated by the risks, threats and vulnerabilities imposed by the components within the environment and have provided general classifications of related attacks, as well as the respective detection and mitigation mechanisms. Virtual Machine Introspection (VMI) has been proven to be an effective tool for malware detection and analysis in virtualized environments. In this paper, we classify attacks in IaaS cloud that can be investigated using VMI-based mechanisms. This infers a special focus on attacks that directly involve Virtual Machines (VMs) deployed in an IaaS cloud. Our classification methodology takes into consideration the source, target, and direction of the attacks. As each actor in a cloud environment can be both source and target of attacks, the classification provides any cloud actor the necessary knowledge of the different attacks by which it can threaten or be threatened, and consequently deploy adapted VMI-based monitoring architectures. To highlight the relevance of attacks, we provide a statistical analysis of the reported vulnerabilities exploited by the classified attacks and their financial impact on actual business processes.
引用
收藏
页数:12
相关论文
共 50 条
  • [41] String-based Malware Detection for Android Environments
    Martin, Alejandro
    Menendez, Hector D.
    Camacho, David
    INTELLIGENT DISTRIBUTED COMPUTING X, 2017, 678 : 99 - 108
  • [42] Classifying Malware Using Convolutional Gated Neural Network
    Kim, Chang Hoon
    Kabanga, Espoir K.
    Kang, Sin-Jae
    2018 20TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT), 2018, : 40 - 44
  • [43] Improvement in task allocation for VM and reduction of Makespan in IaaS model for cloud computing
    Ullah, Arif
    Alomari, Zakaria
    Alkhushayni, Suboh
    Al-Zaleq, Du'a
    Taha, Mohammad Bany
    Remmach, Hassnae
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (08): : 11407 - 11426
  • [44] Integrated policy management framework for IaaS Cloud middleware
    Mauro Canuto
    Jordi Guitart
    Computing, 2016, 98 : 471 - 494
  • [45] A Separation Principle for Optimal IaaS Cloud Computing Distribution
    Kottmann, Felix
    Bolognani, Saverio
    Dorfler, Florian
    2016 24TH EUROPEAN SIGNAL PROCESSING CONFERENCE (EUSIPCO), 2016, : 1393 - 1397
  • [46] Rolling Upgrade with Dynamic Batch Size for Iaas Cloud
    Nabi, Mina
    Toeroe, Maria
    Khendek, Ferhat
    PROCEEDINGS OF 2016 IEEE 9TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (CLOUD), 2016, : 497 - 504
  • [47] An experimental investigation of malware attacks on SCADA systems
    Fovino, Igor Nai
    Carcano, Andrea
    Masera, Marcelo
    Trombetta, Alberto
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2009, 2 (04) : 139 - 145
  • [48] Efficient Deployment and Scheduling of Virtual Machines in an IaaS Cloud
    Wang, D. G.
    Huang, L.
    Xue, X. N.
    Chen, L.
    INTERNATIONAL CONFERENCE ON ADVANCED EDUCATIONAL TECHNOLOGY AND INFORMATION ENGINEERING (AETIE 2015), 2015, : 464 - 470
  • [49] Execution of scientific workflows on IaaS cloud by PBRR algorithm
    Sundararaman, S. A.
    SubbuLakshmi, T.
    INTERNATIONAL JOURNAL OF COMPUTATIONAL SCIENCE AND ENGINEERING, 2019, 19 (04) : 455 - 463
  • [50] The Status Prediction of Physical Machine in IaaS Cloud Environment
    Xia, Qingxin
    Lan, Yuqing
    Xiao, Limin
    2015 INTERNATIONAL CONFERENCE ON CYBER-ENABLED DISTRIBUTED COMPUTING AND KNOWLEDGE DISCOVERY, 2015, : 302 - 305