articleOct 14, 2007Closed access

SecVisor

Indexed incrossref

Abstract

We propose SecVisor, a tiny hypervisor that ensures code integrity for commodity OS kernels. In particular, SecVisor ensures that only user-approved code can execute in kernel mode over the entire system lifetime. This protects the kernel against code injection attacks, such as kernel rootkits. SecVisor can achieve this propertyeven against an attacker who controls everything but the CPU, the memory controller, and system memory chips. Further, SecVisor can even defend against attackers with knowledge of zero-day kernel exploits.

Citation impact

632
total citations
FWCI
59.40
Percentile
100%
References
22
Citations per year

Authors

4

Topics & keywords

Keywords
  • Configfs
  • Rootkit
  • Computer science
  • Kernel (algebra)
  • Operating system
  • Hypervisor
  • System call
  • Code (set theory)
No related works found for this paper.