このエントリーをはてなブックマークに追加
ID 62317
FullText URL
Author
Fujii, Shota Graduate School of Natural Science and Technology, Okayama University
Sato, Masaya Graduate School of Natural Science and Technology, Okayama University ORCID Kaken ID publons researchmap
Taniguchi, Hideo Graduate School of Natural Science and Technology, Okayama University Kaken ID publons researchmap
Abstract
Cases of classified information leakage have become increasingly common. To address this problem, we have developed a function for tracing the diffusion of classified information within an operating system. However, this function suffers from the following two problems: first, in order to introduce the function, the operating system's source code must be modified. Second, there is a risk that the function will be disabled when the operating system is attacked. Thus, we have designed a function for tracing the diffusion of classified information in a guest operating system by using a virtual machine monitor. By using a virtual machine monitor, we can introduce the proposed function in various environments without modifying the operating system's source code. In addition, attacks aimed at the proposed function are made more difficult, because the virtual machine monitor is isolated from the operating system. In this paper, we describe the implementation of the proposed function for file operations and child process creation in the guest operating system with a kernel-based virtual machine. Further, we demonstrate the traceability of diffusing classified information by file operations and child process creation. We also report the logical lines of code required to introduce the proposed function and performance overheads.
Keywords
Information Leak Prevention
Virtualization
Semantic Gap
VMM
Note
This is a post-peer-review, pre-copyedit version of an article published in The Journal of Supercomputing. The final authenticated version is available online at: https://doi.org/10.1007/s11227-016-1671-5
Published Date
2016-2-23
Publication Title
The Journal of Supercomputing
Volume
volume72
Issue
issue5
Publisher
Springer Science and Business Media LLC
Start Page
1841
End Page
1861
ISSN
0920-8542
Content Type
Journal Article
language
English
OAI-PMH Set
岡山大学
File Version
author
DOI
Web of Science KeyUT
Related Url
isVersionOf https://doi.org/10.1007/s11227-016-1671-5