Cloud Armor: Protecting Cloud Commands from Compromised Cloud Services
Cloud Armor: Protecting Cloud Commands from Compromised Cloud Services
复制标题
Cloud Armor:保护云命令免受云服务受损
DOI:
10.1109/cloud.2015.42
复制
发表时间:
2015
期刊:
影响因子:
--
通讯作者:
Joshua Schiffman
中科院分区:
文献类型:
--
作者:
Yuqiong Sun;Giuseppe Petracca;T. Jaeger;H. Vijayakumar;Joshua Schiffman
Infrastructure-as-a-Service (IaaS) clouds can be viewed as distributed systems of cloud services that are entrusted to execute users' cloud commands to provision and manage clouds computing resources (e.g., VM). However, recent vulnerabilities found in cloud services show that this trust is often misplaced. By exploiting a vulnerability in a cloud service, an adversary can hijack or forge commands to modify user VMs, exfiltrate sensitive information, and even modify other service hosts. This paper introduces Cloud Armor, a system that detects and blocks the tampering of user commands without the need for modifications to cloud services. Our insight is that we can construct state machine models to limit the system call sequences executed by cloud services. By applying constraints over system call arguments, we can restrict the way user commands are executed, blocking unauthorized operations from compromised cloud services. We implemented a prototype Cloud Armor system for Open Stack, a widely adopted open source cloud platform. Results show that Cloud Armor can greatly limit attack options available for adversaries while imposing less than 1% overhead for user VMs. As a result, cloud users can leverage Cloud Armor to execute user commands safely even in presence of compromised cloud services.
DOI:
10.1145/1294261.1294279
发表时间:
2007-10
期刊:
--
影响因子:
--
作者:
Andreas Haeberlen;P. Kuznetsov;P. Druschel
通讯作者:
Andreas Haeberlen;P. Kuznetsov;P. Druschel