Title
Towards a Flexible Virtualization-Based Architecture for Malware Detection and Analysis
Abstract
The complexity and sophistication of malicious attacks against IT systems have steadily increased over the past decades. Tools used to detect and analyse such attacks need to evolve continuously as well in order to cope with such attacks. In this paper, we identify some limitation of existing approaches and propose a novel architecture for an attack detection and analysis framework. This architecture is based on virtualization technology to execute target systems, supports a broad spectrum of low-level tracing modules and sophisticated, extensible virtual-machine introspection mechanisms, combined with an extensible plug-in interface for specialized detection and analysis mechanisms, and it offers support for deployment in cloud infrastructures.
Year
DOI
Venue
2014
10.1109/DEXA.2014.67
Database and Expert Systems Applications
Keywords
DocType
ISSN
cloud computing,invasive software,virtual machines,virtualisation,IT systems,analysis mechanisms,cloud infrastructures,extensible plug-in interface,flexible virtualization-based architecture,low-level tracing modules,malicious attacks,malware analysis,malware detection,specialized detection mechanisms,virtual-machine introspection mechanisms,virtualization technology,Intrusion Detection,Malware Analysis,attack detection,plug-in architecture
Conference
1529-4188
Citations 
PageRank 
References 
0
0.34
0
Authors
2
Name
Order
Citations
PageRank
Marius Vlad100.34
Hans P. Reiser216926.19