arrow
Return

HClave: An isolated execution environment design for hypervisor runtime security

delete2024-09-01
delete0
PRE
AI
Q
Qihang Zhou
W
Wenzhuo Cao
X
Xiaoqi Jia *
S
Shengzhi Zhang
J
Jiayun Chen
N
Nan Jiang
W
Weijuan Zhang
H
Haichao Du
Z
Zhenyu Song
Q
Qingjia Huang
DOI:10.1016/j.cose.2024.103923delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Virtualization is the cornerstone of cloud computing, but the hypervisor, the crucial software component that enables virtualization, is known to suffer from various attacks. It is challenging to secure the hypervisor due to at least two reasons. On one hand, commercial hypervisors are usually integrated into a privileged Operating System (OS), which brings in a larger attack surface. On the other hand, multiple Virtual Machines (VM) share a single hypervisor, thus a malicious VM could leverage the hypervisor as a bridge to launch crossVMattacks. In this work, we propose HClave, an isolated execution environment (IEE) design for hypervisor runtime. We decouple the virtualization layer into a tiny trusted computing base (TCB), a large non-secure OS, and multiple HClave IEEs through a bidirectional isolation approach. HClave extends the nested kernel approach to deprive the traditional OS from accessing the tiny TCB's memory and creates an IEE for hypervisor runtime. We implemented HClave based on KVM and evaluated its effectiveness and efficiency through case studies. Experimental results show that HClave can significantly improve the security of the hypervisor with reasonable runtime overhead.
Keywords:
Virtualization security
Hypervisor
Memory isolation
Secure cloud component development

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

U
university of chinese academy of sciences, cas
Scholars:
4.1W
Papers: 3.8W
Citations: 75
C
chinese academy of sciences
Scholars:
56.2W
Papers: 44.8W
Citations: 704