DocumentCode :
2976545
Title :
Fingerprinting large data sets through memory de-duplication technique in virtual machines
Author :
Owens, Rodney ; Wang, Weichao
Author_Institution :
Dept. of SIS, UNC Charlotte, Charlotte, NC, USA
fYear :
2011
fDate :
7-10 Nov. 2011
Firstpage :
1363
Lastpage :
1368
Abstract :
Because of intellectual property, user privacy, and several other reasons, many scientific and military projects choose to hide the information about the data sets that they are using for analysis and computation. Attackers have designed various mechanisms to compromise the operating system or database management system to steal such information. In this paper, we propose a non-interactive mechanism to identify the data sets in use in a cloud computing environment when the virtual machine (VM) hypervisors adopt the memory de-duplication technique. Specifically, when multiple memory pages with the same contents occupy only one physical page, their reading and writing access delay will demonstrate some special properties. We use the access delay of the memory pages that are unique to some specific data sets to derive out whether or not our VM instance is accessing the same data sets as the target of the attack. The experiment results on a widely used scientific analysis software package ParaView demonstrate the practicability of the attack. We also discuss the mechanisms to defend against such attacks.
Keywords :
cloud computing; data privacy; database management systems; industrial property; operating systems (computers); security of data; virtual machines; ParaView; cloud computing environment; database management system; intellectual property; large data set fingerprinting; memory deduplication technique; memory pages; military projects; noninteractive mechanism; operating system; reading access delay; scientific analysis software package; user privacy; virtual machines; writing access delay; Delay; Operating systems; Random access memory; Virtual machine monitors; Virtual machining; Writing;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
MILITARY COMMUNICATIONS CONFERENCE, 2011 - MILCOM 2011
Conference_Location :
Baltimore, MD
ISSN :
2155-7578
Print_ISBN :
978-1-4673-0079-7
Type :
conf
DOI :
10.1109/MILCOM.2011.6127494
Filename :
6127494
Link To Document :
بازگشت