Nyx: Greybox Hypervisor Fuzzing using Fast Snapshots and Affine Types
Ruhr University Bochum · Helmholtz Center for Information Security
Abstract
A hypervisor (also know as virtual machine monitor, VMM) enforces the security boundaries between different virtual machines (VMs) running on the same physical machine. A malicious user who is able to run her own kernel on a cloud VM can interact with a large variety of attack surfaces. Exploiting a software fault in any of these surfaces leads to full access to all other VMs that are co-located on the same host. Hence, the efficient detection of hypervisor vulnerabilities is crucial for the security of the modern cloud infrastructure. Recent work showed that blind fuzzing is the most efficient approach to identify security issues in hypervisors, mainly due to an outstandingly high test throughput. In this…
Citation impact
- FWCI
- —
- Percentile
- —
- References
- 0
Authors
5- SSSergej Schumilo
Ruhr University Bochum
- CACornelius Aschermann
Ruhr University Bochum
- AAAli Abbasi
Helmholtz Center for Information Security, Ruhr University Bochum
- SWSimon Wörner
Helmholtz Center for Information Security, Ruhr University Bochum
- THThorsten Holz
Helmholtz Center for Information Security, Ruhr University Bochum
Topics & keywords
- Fuzz testing
- Hypervisor
- Computer science
- Affine transformation
- Programming language
- Operating system
- Parallel computing
- Virtualization