A Novel Approach for Untrusted Code Execution

A Novel Approach for Untrusted Code Execution
复制标题

一种执行不可信代码的新方法

DOI:
10.1007/978-3-540-77048-0_31
复制
发表时间:
2007
期刊:
Trans. High Perform. Embed. Archit. Compil.
影响因子:
--
通讯作者:
Huaimin Wang
Huaimin Wang
中科院分区:
--
文献类型:
--
作者:
Yan Wen;Jinjing Zhao;Huaimin Wang

文献摘要

参考文献

被引文献

相似文献

在本文中,我们提出了一种新的方法,称为安全虚拟执行环境(SVEE),使用户能够“尝试”不可信的软件,而不必担心以任何方式损坏系统。SVEE的一个关键特性是它通过在托管的虚拟机中执行不受信任的代码来实现操作系统隔离。另一个关键特性是SVEE忠实地再现应用程序的行为,就像它们在底层主机操作系统上本机运行一样。SVEE还提供了一种方便的方法来比较SVEE和主机操作系统中的更改。参考这些比较结果,用户可以决定是否提交这些更改。SVEE支持的任务范围非常广泛,包括恶意代码的研究、不可信软件的受控执行等,本文重点研究了SVEE的执行模型及其安全性评估。
In this paper, we present a new approach called Secure Virtual Execution Environment (SVEE) which enables users to "try out" untrusted software without the fear of damaging the system in any manner. A key feature of SVEE is that it implements the OS isolation by executing untrusted code in a hosted virtual machine. Another key feature is that SVEE faithfully reproduces the behavior of applications, as if they were running natively on the underlying host OS. SVEE also provides a convenient way to compare the changes within SVEE and host OS. Referring to these comparison results, users can make a decision to commit these changes or not. With these powerful characteristics, SVEE supports a wide range of tasks, including the study of malicious code, controlled execution of untrusted software and so on. This paper focuses on the execution model of SVEE and the security evaluation for this model.
计算机系统架构的进展
DOI: 10.1007/11859802_38
发表时间: 2006
期刊: --
影响因子: --
作者:
McGuiness J
通讯作者: McGuiness J