Title
Memory Access Monitoring And Disguising Of Process Information To Avoid Attacks To Essential Services
Abstract
To prevent attacks on essential software and to mitigate damage, an attack avoiding method that complicates process identification from attackers is proposed. This method complicates the identification of essential services by replacing process information with dummy information. However, this method allows attackers to identify essential processes by detecting changes in process information. To address this problems and provide more complexity to process identification, this paper proposes a memory access monitoring by using a virtual machine monitor. By manipulating the page access permission, a virtual machine monitor detects page access, which includes process information, and replaces it with dummy information. This paper presents the design, implementation, and evaluation of the proposed method.
Year
DOI
Venue
2016
10.1109/CANDAR.2016.89
2016 FOURTH INTERNATIONAL SYMPOSIUM ON COMPUTING AND NETWORKING (CANDAR)
Keywords
Field
DocType
attack avoidance, process information, virtualization
Virtualization,Kernel (linear algebra),Permission,Work in process,Computer science,Computer security,Hypervisor,Computer network,Software,Process control,Malware
Conference
ISSN
Citations 
PageRank 
2379-1888
0
0.34
References 
Authors
0
3
Name
Order
Citations
PageRank
Masaya Sato166.56
Toshihiro Yamauchi2179.39
Hideo Taniguchi300.68