Collaborative Research: II-New: OpenVMI: A Software Instrument for Virtual Machine Introspection
协作研究:II-新:OpenVMI:用于虚拟机自省的软件工具
基本信息
- 批准号:0855141
- 负责人:
- 金额:$ 25.5万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2009
- 资助国家:美国
- 起止时间:2009-09-01 至 2014-08-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
This project develops the OpenVMI, an open-source, software-based research instrument for virtual machine introspection (VMI). VMI is important to certain research areas such as distributed computing, automated system management and configuration, and computer security.Virtualization technologies have created new momentumfor a number of research areas such as distributed computing, automated system management and configuration, and computer security. One basic yet powerful instrumentation function in virtualization-based research is virtual machine introspection (VMI): observing a VM?s semantic states and events from outside the VM. VMI is hard to implement, mainly because of the semantic gap between the external and internal observations of the VM. Thus a generic VMI software instrument becomes highly desirable to virtualization researchers. This project develops and deploys OpenVMI, an open-source, software-based research instrument for VMI at Purdue University and North Carolina State University. OpenVMI can be thought of as a ?fluoroscopic? instrument for VMs. Through the OpenVMI API, a user will be able to obtain the VM?s semantic states and events in both kernel and user spaces without modifying or instrumenting the VM. Three research areas are identified at the PIs? institutions that will benefit from the development and deployment of OpenVMI:-Management of hosted virtual environments: This research involves monitoring, provisioning and regulating autonomous virtual environments running in a shared distributed hosting infrastructure. Open- VMI will enable non-intrusive, semantic monitoring of VMs, which will trigger VM management operations at runtime such as VM migration, resource adaptation and access control. -Monitoring, detection and investigation of user-level malware: This research is concerned with OSlevel policies and mechanisms for malware detection and investigation. By using OpenVMI, these policies and mechanisms can be moved out of the target VM, achieving stronger tamper-resistance without losing VM observability. -Monitoring of OS integrity: This research addresses the integrity of the guest OS against kernel-level attacks. It also involves detailed profiling of kernel-level attacks for future detection and recovery. OpenVMI will provide a unique vintage point to observe runtime state changes of kernel objects, which will help reveal details of an OS integrity violation. Six research projects in the above areas are designated for OpenVMI deployment.
该项目开发了OpenVMI,这是一种用于虚拟机内省(VMI)的开源,基于软件的研究工具。VMI对于分布式计算、自动化系统管理和配置、计算机安全等研究领域具有重要意义,虚拟化技术为分布式计算、自动化系统管理和配置、计算机安全等研究领域创造了新的动力。在基于虚拟化的研究中,一个基本但强大的仪器功能是虚拟机内省(VMI):观察虚拟机?的语义状态和事件。VMI很难实现,主要是因为VM的外部和内部观察之间存在语义差距。因此,一个通用的VMI软件工具变得非常可取的虚拟化研究人员。该项目开发和部署OpenVMI,这是普渡大学和北卡罗来纳州州立大学VMI的一个开源的、基于软件的研究工具。OpenVMI可以被认为是一个?荧光透视?虚拟机的工具。通过OpenVMI API,用户将能够获得虚拟机?的语义状态和事件,而无需修改或检测VM。PI确定了三个研究领域?将从OpenVMI的开发和部署中受益的机构:-托管虚拟环境的管理:这项研究涉及在共享分布式托管基础设施中运行的自治虚拟环境的监控、配置和调节。开放- VMI将启用对VM的非侵入式语义监控,这将在运行时触发VM管理操作,例如VM迁移、资源适配和访问控制。- 监控、检测和调查用户级恶意软件:本研究关注用于恶意软件检测和调查的操作系统级策略和机制。通过使用OpenVMI,这些策略和机制可以移出目标VM,从而实现更强的防篡改能力,而不会失去VM的可观察性。- 监控操作系统完整性:本研究解决了客户操作系统的完整性,以抵御内核级攻击。它还涉及对内核级攻击的详细分析,以便将来进行检测和恢复。OpenVMI将提供一个独特的vintage点来观察内核对象的运行时状态变化,这将有助于揭示操作系统完整性违规的细节。上述领域的六个研究项目被指定用于OpenVMI部署。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Dongyan Xu其他文献
Towards an integrated multimedia service hosting overlay
迈向集成多媒体服务托管覆盖
- DOI:
10.1145/1027527.1027545 - 发表时间:
2004 - 期刊:
- 影响因子:0
- 作者:
Dongyan Xu;Xuxian Jiang - 通讯作者:
Xuxian Jiang
PGPatch: Policy-Guided Logic Bug Patching for Robotic Vehicles
PGPatch:针对机器人车辆的策略引导逻辑错误修补
- DOI:
10.1109/sp46214.2022.9833567 - 发表时间:
2022 - 期刊:
- 影响因子:0
- 作者:
Hyungsub Kim;Muslum Ozgur Ozmen;Z. B. Celik;Antonio Bianchi;Dongyan Xu - 通讯作者:
Dongyan Xu
Experimental Evidence of Superdiffusive Thermal Transport in Si0.4Ge0.6 Thin Films
Si0.4Ge0.6 薄膜中超扩散热传输的实验证据
- DOI:
10.1021/acs.nanolett.2c01050 - 发表时间:
2022 - 期刊:
- 影响因子:10.8
- 作者:
Fengju Yao;Shunji Xia;Haoxiang Wei;Jiongzhi Zheng;Ziyuan Yuan;Yusheng Wang;Baoling Huang;Deyu Li;Hong Lu;Dongyan Xu - 通讯作者:
Dongyan Xu
Exposing New Vulnerabilities of Error Handling Mechanism in CAN
暴露CAN错误处理机制的新漏洞
- DOI:
- 发表时间:
2021 - 期刊:
- 影响因子:0
- 作者:
Khaled Serag;R. Bhatia;Vireshwar Kumar;Z. B. Celik;Dongyan Xu - 通讯作者:
Dongyan Xu
Facile preparation of sulfonated biochar derived from spent coffee grounds for efficient hydrogen production from methanolysis of sodium borohydride
由用过的咖啡渣制备磺化生物炭用于高效硼氢化钠甲醇分解制氢的简便方法
- DOI:
10.1016/j.ijhydene.2025.03.108 - 发表时间:
2025-04-04 - 期刊:
- 影响因子:8.300
- 作者:
Enzheng Hu;Kang Xu;Dongyan Xu;Danyang Liu;Lin Zhao - 通讯作者:
Lin Zhao
Dongyan Xu的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Dongyan Xu', 18)}}的其他基金
SaTC: CORE: Medium: Collaborative: Threat-Aware Defense: Evaluating Threats for Continuous Improvement
SaTC:核心:中:协作:威胁感知防御:评估威胁以持续改进
- 批准号:
1801601 - 财政年份:2018
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
TWC: Medium: Collaborative: Towards a Binary-Centric Framework for Cyber Forensics in Enterprise Environments
TWC:媒介:协作:迈向企业环境中以二进制为中心的网络取证框架
- 批准号:
1409668 - 财政年份:2014
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
NeTS: Small: Towards Exposing and Mitigating End-to-End TCP Performance and Fairness Issues in Data Center Networks
NetS:小型:致力于暴露和缓解数据中心网络中的端到端 TCP 性能和公平性问题
- 批准号:
1219004 - 财政年份:2012
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
TC: EAGER: Binary-based Data Structure Revelation for Memory Forensics
TC:EAGER:用于内存取证的基于二进制的数据结构揭示
- 批准号:
1049303 - 财政年份:2010
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
CSR-EHS: Collaborative Research: H-Media: The Holistic-Multistream Environment for Distributed Immersive Applicatons
CSR-EHS:协作研究:H-Media:分布式沉浸式应用程序的整体多流环境
- 批准号:
0720665 - 财政年份:2007
- 资助金额:
$ 25.5万 - 项目类别:
Continuing Grant
CT-ISG: Collaborative Proposal : Enabling Detection of Elusive Malware by Going Out of the Box with Semantically Reconstructed View (OBSERV)
CT-ISG:协作提案:通过语义重建视图 (OBSERV) 开箱即用,能够检测难以捉摸的恶意软件
- 批准号:
0716444 - 财政年份:2007
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
CAREER: Towards Virtual Distributed Environments in a Shared Distributed Infrastructure
职业:在共享分布式基础设施中迈向虚拟分布式环境
- 批准号:
0546173 - 财政年份:2006
- 资助金额:
$ 25.5万 - 项目类别:
Continuing Grant
SGER: Collaborative Research: NMI Development (CISE): Self-Managing Distributed Virtual Environments
SGER:协作研究:NMI 开发 (CISE):自我管理分布式虚拟环境
- 批准号:
0504261 - 财政年份:2005
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
SCI: NMI DEPLOYMENT(ENG) nanoHUB
SCI:NMI 部署(ENG)nanoHUB
- 批准号:
0438246 - 财政年份:2004
- 资助金额:
$ 25.5万 - 项目类别:
Cooperative Agreement
相似国自然基金
Research on Quantum Field Theory without a Lagrangian Description
- 批准号:24ZR1403900
- 批准年份:2024
- 资助金额:0.0 万元
- 项目类别:省市级项目
Cell Research
- 批准号:31224802
- 批准年份:2012
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Cell Research
- 批准号:31024804
- 批准年份:2010
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Cell Research (细胞研究)
- 批准号:30824808
- 批准年份:2008
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Research on the Rapid Growth Mechanism of KDP Crystal
- 批准号:10774081
- 批准年份:2007
- 资助金额:45.0 万元
- 项目类别:面上项目
相似海外基金
Collaborative Research: DESC: Type II: REFRESH: Revisiting Expanding FPGA Real-estate for Environmentally Sustainability Heterogeneous-Systems
合作研究:DESC:类型 II:REFRESH:重新审视扩展 FPGA 空间以实现环境可持续性异构系统
- 批准号:
2324865 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: Enhancing Chemoselectivity and Efficiency Through Control of Axial Coordination in Rh(II) Complexes: An Experimental and Computational Approach
合作研究:通过控制 Rh(II) 配合物的轴向配位提高化学选择性和效率:实验和计算方法
- 批准号:
2247836 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: IRES Track II: Short Courses on Manufacturing Frontiers Leveraging Unique Facilities in Italy
合作研究:IRES Track II:利用意大利独特设施的制造前沿短期课程
- 批准号:
2246809 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: Enhancing Chemoselectivity and Efficiency Through Control of Axial Coordination in Rh(II) Complexes: An Experimental and Computational Approach
合作研究:通过控制 Rh(II) 配合物的轴向配位提高化学选择性和效率:实验和计算方法
- 批准号:
2247835 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: FMitF: Track II: Cross-Language Support for Runtime Verification
合作研究:FMitF:轨道 II:运行时验证的跨语言支持
- 批准号:
2319473 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: DESC: Type II: Multi-Function Cross-Layer Electro-Optic Fabrics for Reliable and Sustainable Computing Systems
合作研究:DESC:II 型:用于可靠和可持续计算系统的多功能跨层电光织物
- 批准号:
2324644 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: IRES Track II: Short Courses on Manufacturing Frontiers Leveraging Unique Facilities in Italy
合作研究:IRES Track II:利用意大利独特设施的制造前沿短期课程
- 批准号:
2246808 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: DESC: Type II: Multi-Function Cross-Layer Electro-Optic Fabrics for Reliable and Sustainable Computing Systems
合作研究:DESC:II 型:用于可靠和可持续计算系统的多功能跨层电光织物
- 批准号:
2324645 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: FMitF: Track II: Cross-Language Support for Runtime Verification
合作研究:FMitF:轨道 II:运行时验证的跨语言支持
- 批准号:
2319472 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant
Collaborative Research: DESC: Type II: REFRESH: Revisiting Expanding FPGA Real-estate for Environmentally Sustainability Heterogeneous-Systems
合作研究:DESC:类型 II:REFRESH:重新审视扩展 FPGA 空间以实现环境可持续性异构系统
- 批准号:
2324864 - 财政年份:2023
- 资助金额:
$ 25.5万 - 项目类别:
Standard Grant