The Experts below are selected from a list of 765 Experts worldwide ranked by ideXlab platform
Leon, Roee Shimon - One of the best experts on this subject based on the ideXlab platform.
-
Applications of Hypervisors in Security
2019Co-Authors: Leon, Roee ShimonAbstract:As malware continue to evolve, so do the countermeasures which attempt to fight them. A modern computer system typically has many security services installed on top of its operating system which include Antivirus, Application-control, IDS, firewall, and many more. Modern operating systems are a highly complex pieces of software which typically contains millions of lines of code. Furthermore, primarily due to endless hardware support, new code is regularly added, resulting in a security sink with an open drain. Most security services run on top of the operating system and, therefore, are subject to the security of the operating system and its Applications. In case of a vulnerability, these services can be removed, thus rendering them them completely useless. This thesis proposes a thin hypervisor-based architecture for a system on top of which a variety of security services can be implemented. These services run in a secure, isolated environment. Furthermore, the proposed system can hide the presence of these security services. The proposed system architecture provides strong security guarantees. The thesis presents four common, heavily researched security problems and proposes four solutions, which are all based on the proposed architecture. The proposed solutions can compete, and even outperform current solutions, both in terms of security and performance. Keywords: trusted computing, virtualization, hypervisor, thin hypervisor, unauthorised execution, malware analysis, code encryption, memory forensicsHaittaohjelmien kehittyessä, myös vastatoimet niitä vastaan kehittyvät yhä kiihtyvällä tahdilla. Nykyaikaisessa tietokonejärjestelmässä on tyypillisesti käyttöjärjestelmän päälle asennettu useita tietoturvapalveluita, jotka sisältävät esimerkiksi virustentorjunta-, sovellusohjaus-, IDS-, palomuuri ja muita suojausmekanismeja. Nykyaikaiset käyttöjärjestelmät ovat erittäin monimutkaisia ohjelmistopaketteja, jotka sisältävät tyypillisesti miljoonia koodirivejä. Lisäksi, pääasiassa valtavan laitteistotuen vuoksi, uutta koodia lisätään säännöllisesti, mistä seuraa tietoturvariskejä. Useimmat tietoturvapalvelut toimivat käyttöjärjestelmän päällä, ja siksi ne ovat käyttöjärjestelmän ja sen sovellusten turvallisuuden osia. Haavoittuvuuden vuoksi nämä palvelut voidaan poistaa, jolloin ne eivät tietenkään ole käytössä ja ovat siten täysin hyödyttömiä. Tämä opinnäyte ehdottaa ohuita hypervisoripohjaisia arkkitehtuureja järjestelmälle, jonka päälle voidaan toteuttaa erilaisia turvallisuuspalveluita. Nämä palvelut toimivat turvallisessa, eristetyssä ympäristössä. Lisäksi ehdotettu järjestelmä voi piilottaa näiden tietoturvapalvelujen näkyvyyden. Ehdotettu järjestelmäarkkitehtuuri tarjoaa siten vahvat turvallisuustakuut. Opinnäytetyössä esitetään neljä yleistä tutkittua turvallisuusongelmaa ja ehdotetaan niille neljää ratkaisuvaihtoehtoa, jotka kaikki perustuvat työssä suunniteltuun arkkitehtuuriin. Ehdotetut ratkaisut voivat kilpailla ja toimia tehokkaammin kuin nykyiset ratkaisut sekä turvallisuuden että suorituskyvyn kannalta. Avainsanat: luotettava tietojenkäsittely, virtualisointi, hypervisori (virtuaalikonemonitori), luvattomat suoritukset, haittaohjelman analyysi, koodin salaus, muistin analyys
R. Maniraj - One of the best experts on this subject based on the ideXlab platform.
-
Malware detection and removal using patch file distribution in android smartphone
2016Co-Authors: P. Mohan, T. Vipin, R. ManirajAbstract:As the smartphone devices are becoming popular, and there is a massive increase of personal data being transmitted and stored on these devices. Thus, the impact of the mobile phones due to the malware is becoming dangerous and also poses a critical threat to the network security. In the existing system, an Antivirus Application is used for the detection and removal of this malware from the device. However, the use of Antivirus Application degrades the overall performance of the mobile phone. So in the proposed system, a two-layer network process is developed for real-time virus propagation through both Bluetooth and SMS. The user actions invoke the virus and spread into their device. It also contains an Android Application, which has a connection to the remote server. The server manages the information regarding the virus and detects the malicious content. Moreover, an automatic alert is sent to the server and then the corresponding patch files are delivered to the affected mobile
Nor Effendy Othman - One of the best experts on this subject based on the ideXlab platform.
-
comparison between android and ios operating system in terms of security
International Conference on Information Technology, 2013Co-Authors: Mohd Shahdi Ahmad, Nur Emyra Musa, Rathidevi Nadarajah, Rosilah Hassan, Nor Effendy OthmanAbstract:This paper compares between android and iPhone Operating System (iOS) mobile operating systems (MOS) that available in the market which is more specific on the security issue. These issues are reportedly the concern of not only the mobile customers but also the software developers. In achieving security requirements, the MOS developers need to know how to achieve the criteria. The security requirements for MOS are Application Sandboxing, Memory Randomization, Encryption, Data Storage Format and Built-in Antivirus. Application sandboxing enforces permissions, privileges, directories, entitlements and kernel access for a mobile app. Memory randomization ensures that the memory regions of mobile Application as well as system shared libraries are all randomized at device and Application start-up. Encryption is performed on disk or filer/folder level and also at the interprocess communication level. It is difficult to speak in favor or against the android or the iOS operating system in terms of better security. The way of using the device plays a major role in determining the security level. In terms of storage, all data are stored in Data Storage Format. Data can be stored at internal storage or external storage. To protect the MOS from virus attacks, Antivirus need to be installed for increasing security areas.
P. Mohan - One of the best experts on this subject based on the ideXlab platform.
-
Malware detection and removal using patch file distribution in android smartphone
2016Co-Authors: P. Mohan, T. Vipin, R. ManirajAbstract:As the smartphone devices are becoming popular, and there is a massive increase of personal data being transmitted and stored on these devices. Thus, the impact of the mobile phones due to the malware is becoming dangerous and also poses a critical threat to the network security. In the existing system, an Antivirus Application is used for the detection and removal of this malware from the device. However, the use of Antivirus Application degrades the overall performance of the mobile phone. So in the proposed system, a two-layer network process is developed for real-time virus propagation through both Bluetooth and SMS. The user actions invoke the virus and spread into their device. It also contains an Android Application, which has a connection to the remote server. The server manages the information regarding the virus and detects the malicious content. Moreover, an automatic alert is sent to the server and then the corresponding patch files are delivered to the affected mobile
Mohd Shahdi Ahmad - One of the best experts on this subject based on the ideXlab platform.
-
comparison between android and ios operating system in terms of security
International Conference on Information Technology, 2013Co-Authors: Mohd Shahdi Ahmad, Nur Emyra Musa, Rathidevi Nadarajah, Rosilah Hassan, Nor Effendy OthmanAbstract:This paper compares between android and iPhone Operating System (iOS) mobile operating systems (MOS) that available in the market which is more specific on the security issue. These issues are reportedly the concern of not only the mobile customers but also the software developers. In achieving security requirements, the MOS developers need to know how to achieve the criteria. The security requirements for MOS are Application Sandboxing, Memory Randomization, Encryption, Data Storage Format and Built-in Antivirus. Application sandboxing enforces permissions, privileges, directories, entitlements and kernel access for a mobile app. Memory randomization ensures that the memory regions of mobile Application as well as system shared libraries are all randomized at device and Application start-up. Encryption is performed on disk or filer/folder level and also at the interprocess communication level. It is difficult to speak in favor or against the android or the iOS operating system in terms of better security. The way of using the device plays a major role in determining the security level. In terms of storage, all data are stored in Data Storage Format. Data can be stored at internal storage or external storage. To protect the MOS from virus attacks, Antivirus need to be installed for increasing security areas.