A dynamic per-context verification of kernel address integrity from external monitors.

Computers & Security(2018)

引用 3|浏览30
暂无评分
摘要
The introduction of Address Translation Redirection Attack (ATRA) has revealed a critical weakness in all existing hardware-based external kernel integrity monitors. The attack redefines system's memory mappings in favor of the attacker so that the monitored kernel regions are relocated out of the monitor's sight. We provide a generalized approach and a prototype evaluation to prove our proposed scheme for ensuring the integrity of kernel address mapping from external monitors.
更多
查看译文
关键词
External kernel integrity monitor,Address translation redirection attack,Memory mapping integrity,Kernel security,Hardware-based kernel monitor,System security,Rootkit
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要