A survey on securing the virtual cloud

被引:13
|
作者
Denz, Robert [1 ]
Taylor, Stephen [1 ]
机构
[1] Dartmouth Coll, Thayer Sch Engn, Hanover, NH 03755 USA
来源
JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS | 2013年 / 2卷 / 01期
关键词
Vulnerability amplifier; Malware prevention and detection; Secure virtual machine managers; Cloud resilience; Zero-day; Increasing attacker workload; Virtual machine; View comparison-based malware detection;
D O I
10.1186/2192-113X-2-17
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The paper presents a survey and analysis of the current security measures implemented in cloud computing and the hypervisors that support it. The viability of an efficient virtualization layer has led to an explosive growth in the cloud computing industry, exemplified by Amazon's Elastic Cloud, Apple's iCloud, and Google's Cloud Platform. However, the growth of any sector in computing often leads to increased security risks. This paper explores these risks and the evolution of mitigation techniques in open source cloud computing. Unlike uniprocessor security, the use of a large number of nearly identical processors acts as a vulnerability amplifier: a single vulnerability being replicated thousands of times throughout the computing infrastructure. Currently, the community is employing a diverse set of techniques in response to the perceived risk. These include malware prevention and detection, secure virtual machine managers, and cloud resilience. Unfortunately, this approach results in a disjoint response based more on detection of known threats rather than mitigation of new or zero-day threats, which are often left undetected. An alternative way forward is to address this issue by leveraging the strengths from each technique in combination with a focus on increasing attacker workload. This approach would make malicious operation time consuming and deny persistence on mission time-scales. It could be accomplished by incorporating migration, non-determinism, and resilience into the fabric of virtualization.
引用
收藏
页数:9
相关论文
共 50 条
  • [31] Virtual resource provision with enhanced QoS in cloud platforms
    College of Computer Science and Electronic Engineering, Hunan University, Changsha
    410082, China
    不详
    411104, China
    Int. J. Networking Virtual Organ., 4 (359-375): : 359 - 375
  • [32] Design on Virtual Machine Frame of Cloud Computing Platform
    Wu Jing
    Zhao Fengzhi
    Dong Yudan
    RESEARCH IN MATERIALS AND MANUFACTURING TECHNOLOGIES, PTS 1-3, 2014, 835-836 : 1832 - 1835
  • [33] A hybrid security model for virtual machines in cloud environment
    Shu Z.
    Ji X.
    Lin Y.
    Shu, Zhaogang (zhaogang.shu@gmail.com), 1600, Inderscience Enterprises Ltd., 29, route de Pre-Bois, Case Postale 856, CH-1215 Geneva 15, CH-1215, Switzerland (10): : 236 - 246
  • [34] Hierarchical Virtual Machine Consolidation in a Cloud Computing System
    Hwang, Inkwon
    Pedram, Massoud
    2013 IEEE SIXTH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (CLOUD 2013), 2013, : 196 - 203
  • [35] REDUNDANT VIRTUAL MACHINES MANAGEMENT IN VIRTUALIZED CLOUD PLATFORM
    Zhang, Fan
    Cao, Junwei
    Cai, Hong
    Liu, Lianchen
    Wu, Cheng
    INTERNATIONAL JOURNAL OF MODELING SIMULATION AND SCIENTIFIC COMPUTING, 2011, 2 (02) : 151 - 168
  • [36] An Optimal Disk Allocation in Cloud Virtual Machine Deployment
    Huang, Li-Shing
    Chen, Hsin-Hung
    Chen, Jian-Bo
    Pao, Tsang-Long
    PROCEEDINGS OF THE IEEE INTERNATIONAL CONFERENCE ON ADVANCED MATERIALS FOR SCIENCE AND ENGINEERING (IEEE-ICAMSE 2016), 2016, : 558 - 561
  • [37] An Energy Efficient Virtual Machine Migration Method in Cloud
    Liang, Hongtao
    Xu, Jianliang
    Yuan, Min
    Liu, Mingtao
    Wang, Xiaohong
    PROCEEDINGS OF THE 2016 4TH INTERNATIONAL CONFERENCE ON MACHINERY, MATERIALS AND COMPUTING TECHNOLOGY, 2016, 60 : 1191 - 1194
  • [38] Optimization of Composite Cloud Service Processing with Virtual Machines
    Di, Sheng
    Kondo, Derrick
    Wang, Cho-Li
    IEEE TRANSACTIONS ON COMPUTERS, 2015, 64 (06) : 1755 - 1768
  • [39] An overview of virtual machine placement schemes in cloud computing
    Masdari, Mohammad
    Nabavi, Sayyid Shahab
    Ahmadi, Vafa
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2016, 66 : 106 - 127
  • [40] A Novel Live Virtual Machine Migration Method in Cloud
    Huang, Feng
    2015 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND ENGINEERING APPLICATIONS (CSEA 2015), 2015, : 271 - 274