Identification of Program Signatures From Cloud Computing System Telemetry Data

被引:0
|
作者
Nichols, Nicole [1 ]
Greaves, Mark [1 ]
Smith, William [1 ]
LaMothe, Ryan [2 ]
Longoni, Gianluca [2 ]
Teuton, Jeremy [2 ]
机构
[1] Pacific Northwest Natl Lab, 1100 Dexter Ave N,Suite 400, Seattle, WA 98109 USA
[2] Pacific Northwest Natl Lab, 902 Battelle Blvd, Richland, WA 99352 USA
关键词
INTRUSION DETECTION;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Malicious cloud computing activity can take many forms, including running unauthorized programs in a virtual environment. Detection of these malicious activities while preserving the privacy of the user is an important research challenge. Prior work has shown the potential viability of using cloud service billing metrics as a mechanism for proxy identification of malicious programs. Previously this novel detection method has been evaluated in a synthetic and isolated computational environment. In this paper we demonstrate the ability of billing metrics to identify programs, in an active cloud computing environment, including multiple virtual machines running on the same hypervisor. The open source cloud computing platform OpenStack, is used for private cloud management at Pacific Northwest National Laboratory. OpenStack provides a billing tool (Ceilometer) to collect system telemetry measurements. We identify four different programs running on four virtual machines under the same cloud user account. Programs were identified with up to 95% accuracy. This accuracy is dependent on the distinctiveness of telemetry measurements for the specific programs we tested. Future work will examine the scalability of this approach for a larger selection of programs to better understand the uniqueness needed to identify a program. Additionally, future work should address the separation of signatures when multiple programs are running on the same virtual machine.
引用
收藏
页数:5
相关论文
共 50 条
  • [1] Scanning Files for Signatures with a MapReduce System on Cloud Computing
    Huang, Tzu-Chi
    Chu, Kuo-Chih
    Shieh, Ce-Kuen
    Chiu, Chui-Ming
    Huang, Sheng-Wei
    2014 INTERNATIONAL SYMPOSIUM ON COMPUTER, CONSUMER AND CONTROL (IS3C 2014), 2014, : 248 - 251
  • [2] Integrating Telemetry Sensors with Cloud Computing
    Suciu, George
    Suciu, Victor
    Cirstca, Valentina
    Focsa, Alexandra
    Halunga, Simona
    Mohamad, Omar Abdulwahabc
    Arscni, Stefan Ciprian
    Butca, Cristina
    2015 14TH ROEDUNET INTERNATIONAL CONFERENCE - NETWORKING IN EDUCATION AND RESEARCH (ROEDUNET NER), 2015, : 218 - 222
  • [3] Security System for Healthcare Data in Cloud Computing
    Louk, Maya
    Lim, Hyotaek
    Lee, Hoon Jae
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2014, 8 (03): : 241 - 248
  • [4] Algebraic Signatures-Based Data Integrity Auditing for Efficient Data Dynamics in Cloud Computing
    Shen, Jian
    Liu, Dengzhi
    He, Debiao
    Huang, Xinyi
    Xiang, Yang
    IEEE TRANSACTIONS ON SUSTAINABLE COMPUTING, 2020, 5 (02): : 161 - 173
  • [5] Alternatives to Cloud Computing for Building a Unified-Data Computing System
    Uvarov, Ivan
    PROCEEDINGS OF THE 2017 IEEE RUSSIA SECTION YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING CONFERENCE (2017 ELCONRUS), 2017, : 595 - 597
  • [6] Data Migration from Grid to Cloud Computing
    Chen, Wei
    Yin, Kuo-Cheng
    Yang, Don-Lin
    Hung, Ming-Chuan
    APPLIED MATHEMATICS & INFORMATION SCIENCES, 2013, 7 (01): : 399 - 406
  • [7] TELEMETRY SYSTEM FOR TRANSMISSION DATA FROM AN AMBULANCE
    Castellano, Nuria N.
    Gazquez Parra, Jose Antonio
    Lopez Rodriguez, Jose Francisco
    Manzano-Agugliaro, Francisco
    DYNA-COLOMBIA, 2012, 79 (175): : 43 - 51
  • [8] From Cloud Computing to Cloud Manufacturing Excution Assembly System
    Giriraj, M.
    Muthu, S.
    TRENDS IN INTELLIGENT ROBOTICS, AUTOMATION, AND MANUFACTURING, 2012, 330 : 303 - +
  • [9] Design of Command, Data and Telemetry Handling System for a Distributed Computing Architecture CubeSat
    Asundi, Sharan A.
    Fitz-Coy, Norman G.
    2013 IEEE AEROSPACE CONFERENCE, 2013,
  • [10] A mobile Internet Applications System Based on Cloud Computing and Identification
    Li, Yang
    Li, Jie
    PROCEEDINGS OF THE 2015 INTERNATIONAL SYMPOSIUM ON COMPUTERS & INFORMATICS, 2015, 13 : 1206 - 1212