(Press-News.org) Researchers from North Carolina State University have developed new software that offers significantly enhanced security for cloud-computing systems. The software is much better at detecting viruses or other malware in the "hypervisors" that are critical to cloud computing, and does so without alerting the malware that it is being examined.
Cloud computing is being hailed as a flexible, affordable way of offering computer resources to consumers. Under the cloud-computing paradigm, the computational power and storage of multiple computers is pooled, and can be shared by multiple users. But concerns exist about hackers finding ways to insert malware into cloud computing systems. A new program called HyperSentry, developed by researchers at NC State and IBM, should help allay those fears.
HyperSentry is security software that focuses on protecting hypervisors in virtual computing clouds. Hypervisors are programs that create the virtual workspace that allows different operating systems to run in isolation from one another – even though each of these systems is using computing power and storage capability on the same computer.
Specifically, HyperSentry enables cloud administrators to measure the integrity of hypervisors in run time – meaning that the administrators can check to see whether a hypervisor has been breached by a third party, while the hypervisor is operating.
"The concern is that an attacker could compromise a hypervisor, giving them control of the cloud," says Dr. Peng Ning, professor of computer science at NC State and co-author of a paper describing the research. If a hypervisor is compromised, the attacker could do almost anything: access users' sensitive information; use the cloud's computing resources to attack other Internet entities; spread malware; etc.
"HyperSentry solves two problems," Ning says. "It measures hypervisor integrity in a stealthy way, and it does so in the context of the hypervisor." Context is important, Ning explains. To effectively identify hypervisor problems you need to look at the hypervisor program memory and the registers inside the central processing units (CPUs) that are actually running the program. (The registers are the internal memory of CPUs.) This is important because intelligent malware can conceal itself from security programs that look only at the memory where the hypervisor is supposed to be located – they can effectively make themselves invisible to such security programs by modifying certain registers of the CPU and thus relocating the infected hypervisor elsewhere. By ensuring in-context measurement, HypeSentry can successfully track where the infected hypervisor is actually located and thus defeat such intelligent malware.
The fact that HyperSentry can check the integrity of a hypervisor in a stealthy way – checking the hypervisor without the hypervisor being aware of it – is important too. If a hypervisor is aware that it is being scrutinized, and has already been compromised, it can notify the malware. The malware, once alerted, can then restore the hypervisor to its normal state in order to avoid detection. Then the malware effectively hides until the security check is over.
Once a compromised hypervisor has been detected, a cloud administrator can take action to respond to the compromise, such as shutting down the computer, performing additional investigations to identify the scope of the problem and limiting how far the damage can spread.
INFORMATION:
The research is being presented Oct. 5 at the 17th ACM Conference on Computer and Communications Security in Chicago, Ill. The research was a part of the thesis work of NC State Ph.D. student Ahmed Azab, and was co-authored by Ning; NC State Ph.D. student Zhi Wang; Dr. Xuxian Jiang, an assistant professor of computer science at NC State; and Dr. Xiaolan Zhang and Nathan Skalsky of IBM. The work was done with funding from the U.S. Army Research Office, the National Science Foundation and IBM.
END
Researchers have found that magnetic resonance imaging (MRI) may be sufficient for the routine surveillance of some great vessel (primary blood vessels [e.g., aorta and vena cavae]) stents that are commonly used to treat congenital heart defects (a defect in the structure of the heart and great vessels that is present at birth) in children and young adults, according to a study in the October issue of the American Journal of Roentgenology (www.ajronline.org). MRI is a noninvasive medical test that helps physicians diagnose and treat medical conditions.
"Computed tomography ...
Scientists at the University of Granada have developed a new therapy for the treatment of skin and lung cancer. This therapy involves the use of a suicide coliphage-gene (gene E) that can induce death to cells transfected with it.. Their studies have demostrated that this technique is not only effective in vitro (using tumour cell cultures), but also in vivo through the use of experimental animals in which tumours were induced.
Although further research is required, the results obtained at the University of Granada revealed gene E's intensive antitumour activity, which ...
The prediction of the structure and function of biological macromolecules (i.e., the machinery of life) is of foremost importance in the field of structural biology. Since the elucidation of the three-dimensional structure of DNA (the molecule that carries all genetic information) by Watson and Crick, scientists have strived to decipher the hidden code that determines the evolution of the spatial arrangement of these molecules towards their functional native state. Attempts to follow these structural transitions experimentally and with atomic resolution are hampered by ...
"Yeah, I'm on my way home." "That's funny." "Uh-huh." "What? No! I thought you were – " "Oh, ok." Listening to someone talk on a cell phone is very annoying. A new study published in Psychological Science, a journal of the Association for Psychological Science, finds out why: Hearing just one side of a conversation is much more distracting than hearing both sides and reduces our attention in other tasks.
Lauren Emberson, a psychology Ph.D. candidate at Cornell University, came up with the idea for the study when she was taking the bus as an undergraduate student at the ...
Philadelphia, PA, September 21, 2010 – For the past two decades, cancer therapy has become more sophisticated and effective, resulting in an ever-expanding group of long-term cancer survivors. There is also a growing awareness of the potentially negative effects of cancer treatment on the heart and the management of cardiac disease during and after cancer therapy. In the September/October issue of Progress in Cardiovascular Diseases an international group of experts takes an in-depth look at the ways in which cancer treatment profoundly impacts patients' cardiovascular ...
West Lafayette, IN—September 21, 2010— While most citizens recognize that corruption is "bad," the average citizen is unaware of the benefits enjoyed by politically connected firms, or how common government favors are worldwide. In the U.S., many citizens were outraged at the provision and size of bailouts for "too big to fail" banks. A new study from the journal Financial Management claims that not only does corruption exist in the corporate world, but that political connections are extremely important for corporate success.
Author Mara Faccio studied several thousand ...
The ability to understand emotions is a key ingredient in people who become leaders in groups with no formal authority, a new paper has found.
The findings come through two different studies using commerce students. Study participants were given an emotional ability test as part of the study, as well as a self-analysis of their emotional skills. Then, they organized themselves into small groups or were randomly assigned to small groups and were given a group project to do.
At the end of the project they were asked to identify whom they thought had shown the greatest ...
Research on the quality of US resident physician performance levels has often been limited by lack of a comparison group or strict focus on specific diseases and geographical areas. In order to gain insight on differences in quality of care provided by resident physicians versus staff physicians, Boston Medical Center (BMC) and Palo Alto Medical Foundation researchers investigated performance of physicians in 33,900 hospital-based outpatient visits throughout the US.
The researchers collected data from the 1997-2004 National Hospital Ambulatory Medical Care Survey and ...
HOMESTEAD, FL—Florida's lucrative avocado industry could face a serious blow from a duo of deadly new invaders. Together, the invasive fungus called "laurel wilt disease" and the redbay ambrosia beetle, which carries laurel wilt, represent a significant economic threat to the industry. According to a report published in HortTechnology, direct losses from the invasion could range from $183 million to a remarkable high of $356 million. "The impact on the local economy would be catastrophic", noted Dr. Edward A. Evans of the University of Florida's Tropical Research and Education ...
NEW YORK, 20 September 2010 – Immunizing children against preventable diseases is critical to achieving United Nations-led goals to reduce child deaths, global health and development chiefs said in New York today.
At an event hosted by UNICEF, the Republic of Kenya and the GAVI Alliance, health ministers, donors and the heads of UN agencies called for the introduction of new vaccines that can dramatically reduce deaths due to diarrhoea and pneumonia, the two biggest killers of children under five.
Kenya's Minister of Public Health and Sanitation, Dr Rose Mugo, said her ...