Title
Hardware-Assisted Intrusion Detection by Preserving Reference Information Integrity
Abstract
Malware detectors and integrity checkers detect malicious activities by comparing against reference data. To ensure their trustworthy operation, it is crucial to protect the reference data from unauthorized modification. This paper proposes the Soteria Security Card (SSC), an append-only storage. To the best of our knowledge, this work is the first to introduce the concept of an append-only storage and its application to information security. The SSC framework allows only read and append operations, and forbids over-write and erase operations. By exploiting this trait, we can protect the reference data that must be updated constantly. It is demonstrated how SSC facilitates log protection and file integrity checking.
Year
DOI
Venue
2013
10.1007/978-3-319-03859-9_25
ICA3PP
Field
DocType
Citations 
Reference data (financial markets),Computer security,Computer science,Trustworthiness,Parallel computing,Information integrity,Information security,Append,Malware,Intrusion detection system
Conference
0
PageRank 
References 
Authors
0.34
13
5
Name
Order
Citations
PageRank
Junghee Lee122627.26
Chrysostomos Nicopoulos283550.37
Gi-Hwan Oh301.01
Sang-Won Lee41536106.03
Jongman Kim577037.65