论文标题
力量越大,虐待越危险:面对云中的恶意内部人士
The Greater The Power, The More Dangerous The Abuse: Facing Malicious Insiders in The Cloud
论文作者
论文摘要
金融危机使世界各地的公司都在寻找更便宜,更有效的解决方案,以在计算能力和存储方面满足其需求。他们的追求以云计算基础架构的诞生而结束。但是,随着新的有前途的技术,新的攻击向量诞生了,而恶意内部人士则重新出现了一个古老而已知的威胁。内部人士可以利用其在云基础架构中的特权位置来完成或帮助针对云基础架构的攻击。在本文中,我们提出了一种基于图形处理单元(GPU)加速度的云基础架构的实用有效的入侵检测系统解决方案。我们的解决方案监视已部署的虚拟机的操作,尤其是主机操作系统(称为DOM0)的操作,将收集的信息关联以根据Smith-Waterman算法检测不常见的行为。我们的建议使各种已知的虚拟机的合作以及使用的每个已知的GPU加速单元的合作,从而提供了最大的安全机制,同时最大程度地减少了在中央处理单元(CPU)使用方面最大程度地减少所施加的开销。
The financial crisis made companies around the world search for cheaper and more efficient solutions to cover their needs in terms of computational power and storage. Their quest came to end with the birth of Cloud Computing infrastructures. However, along with the new promising technology, new attack vectors were born, and one old and known threat, that of Malicious Insiders reappeared. Insiders can use their privileged position inside the Cloud infrastructure to accomplish or help in attacks against a Cloud infrastructure. In this paper, we propose a practical and efficient intrusion detection system solution for Cloud infrastructures based on Graphical Processing Unit (GPU) acceleration. Our solution monitors the deployed virtual machines' operations and especially those of the host Operating System, known as Dom0, correlating the collected information to detect uncommon behavior based on the Smith-Waterman algorithm. Our proposal makes possible the cooperation of a variety of known hypervisors along with every known GPU acceleration unit used, thus offering the maximum of security mechanics while at the same time minimizing the imposed overhead in terms of Central Processing Unit (CPU) usage.