articleOct 14, 2007Closed access
SecVisor
Indexed incrossref
Abstract
We propose SecVisor, a tiny hypervisor that ensures code integrity for commodity OS kernels. In particular, SecVisor ensures that only user-approved code can execute in kernel mode over the entire system lifetime. This protects the kernel against code injection attacks, such as kernel rootkits. SecVisor can achieve this propertyeven against an attacker who controls everything but the CPU, the memory controller, and system memory chips. Further, SecVisor can even defend against attackers with knowledge of zero-day kernel exploits.
Citation impact
632
total citations
- FWCI
- 59.40
- Percentile
- 100%
- References
- 22
Citations per year
Authors
4Topics & keywords
Topics
Keywords
- Configfs
- Rootkit
- Computer science
- Kernel (algebra)
- Operating system
- Hypervisor
- System call
- Code (set theory)
No related works found for this paper.