DocumentCode
2967979
Title
A fingerprinting system calls approach for intrusion detection in a cloud environment
Author
Gupta, Swastik ; Kumar, Pranaw ; Sardana, Ankita ; Abraham, Ajith
Author_Institution
Dept. of E&CE, Indian Inst. of Technol., Uttarakhand, Roorkee, India
fYear
2012
fDate
21-23 Nov. 2012
Firstpage
309
Lastpage
314
Abstract
Cloud Computing envisioned as the next generation architecture for IT enterprises, has proliferated itself due to the advantages it provides. Cloud Computing provides solutions for carrying out efficient, scalable and low cost computing. Due to the distributed nature of cloud based system, it is vulnerable to a large category of attacks out of which VM based attacks are most common. To counter these attacks we need Intrusion Detection System (IDS), which is used to monitor network traffic and policy violations from unauthorized users. Anomaly Detection is a technique of Intrusion Detection, which is used to detect intrusions by monitoring system activity and finding out patterns that do not comply with the normal behavior. In this paper an approach for anomaly detection in cloud environment is presented, which is based upon analysis of system call sequences generated by the virtual machines to the hypervisor. Our proposed implementation prevents malicious VM users to modify well known frequently executed programs.
Keywords
authorisation; business data processing; cloud computing; computer network security; telecommunication traffic; virtual machines; IDS; IT enterprises; VM-based attacks; anomaly detection; cloud computing; cloud environment; cloud-based system; distributed computing; fingerprinting system calls approach; intrusion detection system; malicious VM user prevention; network traffic monitoring; next generation architecture; policy violations; system call sequence analysis; unauthorized users; virtual machines; Conferences; Decision support systems; Handheld computers; Social network services; IDS; anomaly detection; cloud; finger print; system call; xen;
fLanguage
English
Publisher
ieee
Conference_Titel
Computational Aspects of Social Networks (CASoN), 2012 Fourth International Conference on
Conference_Location
Sao Carlos
Print_ISBN
978-1-4673-4793-8
Type
conf
DOI
10.1109/CASoN.2012.6412420
Filename
6412420
Link To Document