arrow
Return

vmOS: A virtualization-based, secure desktop system

delete2017-03-01
delete3
PRE
AI
H
Hongliang Liang *
M
Mingyu Li
徐鉴 cover
徐鉴 (Jian Xu)
W
Wenying Hu
X
Xiaoxiao Pei
X
Xiaodong Jia
Y
Yan Song
DOI:10.1016/j.cose.2016.10.008delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Centralized management is typically applied in modern operating system (OS) architecture; however, such systems are prone to crash when any certain component of the OS is explicitly damaged. The basic reason is that these OSes can rarely support a thoroughly secure or isolated environment either between OS kernel-mode components or between user mode softwares. To mitigate this issue, we propose vmOS, an operating system that aims at improving the security of desktop computing environment. vmOS applies isolation technique to reduce attack surface, virtualization and mandatory access control to provide isolated environment among system components, application software and user privacy. We implement vmOS by adopting hardware-supported virtualization technology and modifying several well-known open source softwares, which aim to provide run-time efficiency of integrated system. Finally, we evaluate the security and performance by some vulnerability exploits and benchmark tools, showing that vmOS is capable of assuring the overall security of users' desktop computing with less overhead. (C) 2016 Elsevier Ltd. All rights reserved.
Keywords:
Hardware virtualization
Virtual machine isolation
Mandatory access control
Secure desktop system
Qemu
KVM
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

B
beijing university of posts & telecommunications
Scholars:
1.4W
Papers: 1.2W
Citations: 9