Collaborative Research: II-NEW: OpenVMI: A Software Instrument for Virtual Machine Introspection
协作研究:II-新:OpenVMI:用于虚拟机自省的软件工具
基本信息
- 批准号:0855036
- 负责人:
- 金额:$ 22.5万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2009
- 资助国家:美国
- 起止时间:2009-09-01 至 2014-08-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Proposal Title: Collaborative Research: II-New: OpenVMI: A Software Instrumentfor Virtual Machine IntrospectionInstitution: Purdue UniversityAbstract Date: 07/09/09This project develops the OpenVMI, an open-source, software-based researchinstrument for virtual machine introspection (VMI). VMI is important to certain researchareas such as distributed computing, automated system management andconfiguration, and computer security.Virtualization technologies have created new momentumfor a number of research areassuch as distributed computing, automated system management and configuration, andcomputer security. One basic yet powerful instrumentation function invirtualization-based research is virtual machine introspection (VMI): observing a VM?ssemantic states and events from outside the VM. VMI is hard to implement, mainlybecause of the semantic gap between the external and internal observations of the VM.Thus a generic VMI software instrument becomes highly desirable to virtualizationresearchers.This project develops and deploys OpenVMI, an open-source, software-based researchinstrument for VMI at Purdue University and North Carolina State University. OpenVMIcan be thought of as a ?fluoroscopic? instrument for VMs. Through the OpenVMI API, auser will be able to obtain the VM?s semantic states and events in both kernel and userspaces without modifying or instrumenting the VM.Three research areas are identified at the PIs? institutions that will benefit from thedevelopment and deployment of OpenVMI:-Management of hosted virtual environments: This research involves monitoring,provisioning and regulating autonomous virtual environments running in a shareddistributed hosting infrastructure. Open- VMI will enable non-intrusive, semanticmonitoring of VMs, which will trigger VM management operations at runtime such asVM migration, resource adaptation and access control.-Monitoring, detection and investigation of user-level malware: This research isconcerned with OSlevel policies and mechanisms for malware detection andinvestigation. By using OpenVMI, these policies and mechanisms can be moved out ofthe target VM, achieving stronger tamper-resistance without losing VM observability.-Monitoring of OS integrity: This research addresses the integrity of the guest OSagainst kernel-level attacks. It also involves detailed profiling of kernel-level attacks forfuture detection and recovery. OpenVMI will provide a unique vintage point to observeruntime state changes of kernel objects, which will help reveal details of an OS integrityviolation.Six research projects in the above areas are designated for OpenVMI deployment.NATIONAL SCIENCE FOUNDATIONProposal AbstractProposal:0855141 PI Name:Xu, DongyanPrinted from eJacket: 07/25/09 Page 1 of 1
提案标题:合作研究:II-新:OpenVMI:虚拟机内省软件工具机构:Purdue University摘要日期:07/09/09本项目开发了OpenVMI,一个开源的,基于软件的虚拟机内省(VMI)研究工具。VMI对于分布式计算、自动化系统管理和配置、计算机安全等研究领域具有重要的意义,虚拟化技术为分布式计算、自动化系统管理和配置、计算机安全等研究领域创造了新的动力。在基于虚拟化的研究中,一个基本而强大的工具功能是虚拟机内省(VMI):观察虚拟机?从VM外部访问语义状态和事件。VMI很难实现,主要是因为虚拟机的外部和内部观察之间的语义鸿沟。因此,一个通用的VMI软件工具变得非常可取的virtualizationresearchers。本项目开发和部署OpenVMI,一个开放源代码,基于软件的研究仪器在普渡大学和北卡罗来纳州州立大学的VMI。OpenVMI可以被认为是一个?荧光透视?虚拟机的工具。通过OpenVMI API,用户将能够获得虚拟机?的语义状态和事件在内核和用户空间,而无需修改或仪表VM。将从OpenVMI的开发和部署中受益的机构:-托管虚拟环境的管理:这项研究涉及监控、配置和调节在共享分布式托管基础设施中运行的自治虚拟环境。开放- VMI将启用对VM的非侵入式语义监控,这将在运行时触发VM管理操作,例如VM迁移,资源适配和访问控制。用户级恶意软件的监控、检测和调查:本研究关注用于恶意软件检测和调查的操作系统级策略和机制。通过使用OpenVMI,这些策略和机制可以从目标VM中移除,从而在不失去VM可观察性的情况下实现更强的防篡改能力。操作系统完整性的监控:本研究针对内核级攻击解决了客户操作系统的完整性。它还涉及详细分析内核级攻击,以便将来进行检测和恢复。OpenVMI将提供一个独特的vintage point,用于查看内核对象的实时状态变化,这将有助于揭示操作系统完整性违规的细节。OpenVMI部署指定了上述领域的六个研究项目。OpenVMI科学基金会提案摘要提案:0855141 PI姓名:Xu,Dongyan打印自eJacket:07/25/09第1页,共1页
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Xuxian Jiang其他文献
Time-Traveling Forensic Analysis of VM-Based High-Interaction Honeypots
基于虚拟机的高交互蜜罐的时间旅行取证分析
- DOI:
10.1007/978-3-642-31909-9_12 - 发表时间:
2011 - 期刊:
- 影响因子:0
- 作者:
D. Srinivasan;Xuxian Jiang - 通讯作者:
Xuxian Jiang
Tracking the Trackers: Fast and Scalable Dynamic Analysis of Web Content for Privacy Violations
跟踪跟踪者:对 Web 内容进行快速且可扩展的隐私侵犯动态分析
- DOI:
10.1007/978-3-642-31284-7_25 - 发表时间:
2012 - 期刊:
- 影响因子:0
- 作者:
M. Tran;Xinshu Dong;Zhenkai Liang;Xuxian Jiang - 通讯作者:
Xuxian Jiang
Behavioral Footprinting for Self-Propagating Worm Detection and Profiling
用于自我传播蠕虫检测和分析的行为足迹
- DOI:
- 发表时间:
- 期刊:
- 影响因子:2.7
- 作者:
朱兴全;Xuxian Jiang - 通讯作者:
Xuxian Jiang
vBET: a VM-based emulation testbed
vBET:基于虚拟机的仿真测试平台
- DOI:
10.1145/944773.944789 - 发表时间:
2003 - 期刊:
- 影响因子:0
- 作者:
Xuxian Jiang;Dongyan Xu - 通讯作者:
Dongyan Xu
A middleware system that integrates and elevates virtual machine and virtual network technologies facilitates the creation of virtual distributed environments in a shared infrastructure
集成和提升虚拟机和虚拟网络技术的中间件系统有助于在共享基础设施中创建虚拟分布式环境
- DOI:
- 发表时间:
2005 - 期刊:
- 影响因子:0
- 作者:
Paul Ruth;Xuxian Jiang;Dongyan Xu;Sébastien;Goasguen - 通讯作者:
Goasguen
Xuxian Jiang的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Xuxian Jiang', 18)}}的其他基金
CAREER: Towards Exterminating Stealthy Rootkits - A Systematic Immunization Approach
事业:消灭隐形 Rootkit - 系统免疫方法
- 批准号:
0952640 - 财政年份:2010
- 资助金额:
$ 22.5万 - 项目类别:
Continuing Grant
CT-ISG: Understanding Botnet Command and Control (C&C) Communication
CT-ISG:了解僵尸网络命令和控制(C
- 批准号:
0831160 - 财政年份:2008
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
CT-ISG: Collaborative: Enabling Detection of Elusive Malware by by Going Out of the Box with Semantically Reconstructed View (OBSERV)
CT-ISG:协作:通过开箱即用的语义重建视图 (OBSERV) 来检测难以捉摸的恶意软件
- 批准号:
0852131 - 财政年份:2008
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
CT-ISG: Understanding Botnet Command and Control (C&C) Communication
CT-ISG:了解僵尸网络命令和控制(C
- 批准号:
0855297 - 财政年份:2008
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
CT-ISG: Collaborative: Enabling Detection of Elusive Malware by by Going Out of the Box with Semantically Reconstructed View (OBSERV)
CT-ISG:协作:通过开箱即用的语义重建视图 (OBSERV) 来检测难以捉摸的恶意软件
- 批准号:
0716376 - 财政年份:2007
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
相似国自然基金
Research on Quantum Field Theory without a Lagrangian Description
- 批准号:24ZR1403900
- 批准年份:2024
- 资助金额:0.0 万元
- 项目类别:省市级项目
Cell Research
- 批准号:31224802
- 批准年份:2012
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Cell Research
- 批准号:31024804
- 批准年份:2010
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Cell Research (细胞研究)
- 批准号:30824808
- 批准年份:2008
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Research on the Rapid Growth Mechanism of KDP Crystal
- 批准号:10774081
- 批准年份:2007
- 资助金额:45.0 万元
- 项目类别:面上项目
相似海外基金
Collaborative Research: DESC: Type II: REFRESH: Revisiting Expanding FPGA Real-estate for Environmentally Sustainability Heterogeneous-Systems
合作研究:DESC:类型 II:REFRESH:重新审视扩展 FPGA 空间以实现环境可持续性异构系统
- 批准号:
2324865 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: Enhancing Chemoselectivity and Efficiency Through Control of Axial Coordination in Rh(II) Complexes: An Experimental and Computational Approach
合作研究:通过控制 Rh(II) 配合物的轴向配位提高化学选择性和效率:实验和计算方法
- 批准号:
2247836 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: IRES Track II: Short Courses on Manufacturing Frontiers Leveraging Unique Facilities in Italy
合作研究:IRES Track II:利用意大利独特设施的制造前沿短期课程
- 批准号:
2246809 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: Enhancing Chemoselectivity and Efficiency Through Control of Axial Coordination in Rh(II) Complexes: An Experimental and Computational Approach
合作研究:通过控制 Rh(II) 配合物的轴向配位提高化学选择性和效率:实验和计算方法
- 批准号:
2247835 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: FMitF: Track II: Cross-Language Support for Runtime Verification
合作研究:FMitF:轨道 II:运行时验证的跨语言支持
- 批准号:
2319473 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: DESC: Type II: Multi-Function Cross-Layer Electro-Optic Fabrics for Reliable and Sustainable Computing Systems
合作研究:DESC:II 型:用于可靠和可持续计算系统的多功能跨层电光织物
- 批准号:
2324644 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: IRES Track II: Short Courses on Manufacturing Frontiers Leveraging Unique Facilities in Italy
合作研究:IRES Track II:利用意大利独特设施的制造前沿短期课程
- 批准号:
2246808 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: DESC: Type II: Multi-Function Cross-Layer Electro-Optic Fabrics for Reliable and Sustainable Computing Systems
合作研究:DESC:II 型:用于可靠和可持续计算系统的多功能跨层电光织物
- 批准号:
2324645 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: DESC: Type II: REFRESH: Revisiting Expanding FPGA Real-estate for Environmentally Sustainability Heterogeneous-Systems
合作研究:DESC:类型 II:REFRESH:重新审视扩展 FPGA 空间以实现环境可持续性异构系统
- 批准号:
2324864 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant
Collaborative Research: FMitF: Track II: Cross-Language Support for Runtime Verification
合作研究:FMitF:轨道 II:运行时验证的跨语言支持
- 批准号:
2319472 - 财政年份:2023
- 资助金额:
$ 22.5万 - 项目类别:
Standard Grant