Presentation 2011/7/5
Implementation and Evaluation of Virtual Machine Based Kernel Log Collector
MASAYA SATO, TOSHIHIRO YAMAUCHI,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) Logging information is necessary in order to understand a computer's behavior. However, there is a possibility that attackers will delete logs to hide the evidence of their attacking and cheating. Moreover, various problems might cause the loss of logging information. To address these issues, we propose a system to prevent tampering and loss of logging information using a virtual machine monitor (VMM). In this system, logging information generated by the operating system (OS) and application program (AP) working on the target virtual machine (VM) is gathered by the VMM without any modification of the kernel source codes. The security of the logging information is ensured by its isolation from the VM. In addition, the isolation and multiple copying of logs can help in the detection of tampering. This paper describes the implementation and evaluation of the mechanism that protects logging information generated by the OS.
Keyword(in Japanese) (See Japanese page)
Keyword(in English)
Paper #
Date of Issue

Conference Information
Committee SITE
Conference Date 2011/7/5(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Social Implications of Technology and Information Ethics (SITE)
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Implementation and Evaluation of Virtual Machine Based Kernel Log Collector
Sub Title (in English)
Keyword(1)
1st Author's Name MASAYA SATO
1st Author's Affiliation Graduate School of Natural Science and Technology, Okayama University()
2nd Author's Name TOSHIHIRO YAMAUCHI
2nd Author's Affiliation Graduate School of Natural Science and Technology, Okayama University
Date 2011/7/5
Paper #
Volume (vol) vol.111
Number (no) 124
Page pp.pp.-
#Pages 8
Date of Issue