Journal on Communications ›› 2018, Vol. 39 ›› Issue (11): 116-128.doi: 10.11959/j.issn.1000-436x.2018241

• Papers • Previous Articles     Next Articles

Virtual machine co-residency method on cloud computing platform

Weijie LIU1,2,Li’na WANG1,2(),Danlei WANG1,2,Zhengguang YIN3,Nan FU1,2   

  1. 1 Key Laboratory of Aerospace Information Security and Trusted Computing,Ministry of Education,Wuhan 430079,China
    2 School of Cyber Science and Engineering,Wuhan University,Wuhan 430079,China
    3 Alibaba Cloud Computing Co.,Ltd.,Hangzhou 311121,China
  • Revised:2018-06-29 Online:2018-11-01 Published:2018-12-10
  • Supported by:
    The National Natural Science Foundation of China(U1536204);The Central University Basic Business Expenses Special Funding for Scientific Research Project(2042018kf1028)

Abstract:

If the attacker wants to compromise a target virtual machine on a cloud platform,the malicious virtual machine must be co-resident with the target.Based on this,a virtual machine co-residency method was proposed.The method combined a co-residency detection scheme based on covert channel construction and an automatic virtual machine flooding strategy,and was evaluated on a well-known domestic cloud platform.Experiment shows that the adaptive covert channel can achieve accuracies of 95%,the proposed detection scheme has strong robustness whose false positive rate is less than 5 ‰,the proposed method is versatile and keeps the virtualization isolation barrier intact,which has great potential threat and should be paid great attention and precaution.

Key words: cloud computing platform, virtual machine co-residency, covert channel,, virtual machine flooding

CLC Number: 

No Suggested Reading articles found!