{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,9]],"date-time":"2024-09-09T20:14:35Z","timestamp":1725912875162},"publisher-location":"Cham","reference-count":49,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319663319"},{"type":"electronic","value":"9783319663326"}],"license":[{"start":{"date-parts":[[2017,1,1]],"date-time":"2017-01-01T00:00:00Z","timestamp":1483228800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2017]]},"DOI":"10.1007\/978-3-319-66332-6_18","type":"book-chapter","created":{"date-parts":[[2017,10,11]],"date-time":"2017-10-11T07:58:05Z","timestamp":1507708685000},"page":"403-424","source":"Crossref","is-referenced-by-count":9,"title":["Scotch: Combining Software Guard Extensions and System Management Mode to Monitor Cloud Resource Usage"],"prefix":"10.1007","author":[{"given":"Kevin","family":"Leach","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fengwei","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Westley","family":"Weimer","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2017,10,12]]},"reference":[{"key":"18_CR1","unstructured":"Credit Scheduler. http:\/\/wiki.xensource.com\/xenwiki\/CreditScheduler"},{"key":"18_CR2","unstructured":"NSA\u2019s ANT Division Catalog of Exploits for Nearly Every Major Software\/Hardware\/Firmware. http:\/\/Leaksource.wordpress.com"},{"key":"18_CR3","unstructured":"Xentrace. http:\/\/linux.die.net\/man\/8\/xentrace"},{"key":"18_CR4","unstructured":"Amazon AWS: Amazon CloudWatchamazon cloudwatch. https:\/\/aws.amazon.com\/cloudwatch"},{"key":"18_CR5","unstructured":"AMD: AMD RS800 ASIC family BIOS developer\u2019s guide (2010)"},{"key":"18_CR6","unstructured":"AMD. AMD64 architecture programmer\u2019s manual, Volume 2: System Programming (2013)"},{"key":"18_CR7","unstructured":"Arnautov, S., Trach, B., Gregor, F., Knauth, T., Martin, A., Priebe, C., Lind, J., Muthukumaran, D., O\u2019Keeffe, D., Stillwell, M.L., et al.: SCONE: secure Linux containers with Intel SGX. In: 12th USENIX Symposium Operating Systems Design and Implementation (2016)"},{"key":"18_CR8","doi-asserted-by":"crossref","unstructured":"Azab, A.M., Ning, P., Wang, Z., Jiang, X., Zhang, X., Skalsky, N.C.: HyperSentry: enabling stealthy in-context measurement of hypervisor integrity. In: Proceedings of the 17th ACM Conference on Computer and Communications Security (CCS 2010) (2010)","DOI":"10.1145\/1866307.1866313"},{"key":"18_CR9","doi-asserted-by":"crossref","unstructured":"Bates, A., Mood, B., Pletcher, J., Pruse, H., Valafar, M., Butler, K.: Detecting co-residency with active traffic analysis techniques. In: Proceedings of the 2012 ACM Workshop on Cloud computing security workshop, pp. 1\u201312. ACM (2012)","DOI":"10.1145\/2381913.2381915"},{"issue":"3","key":"18_CR10","doi-asserted-by":"crossref","first-page":"8","DOI":"10.1145\/2799647","volume":"33","author":"A Baumann","year":"2015","unstructured":"Baumann, A., Peinado, M., Hunt, G.: Shielding applications from an untrusted cloud with haven. ACM Trans. Comput. Syst. (TOCS) 33(3), 8 (2015)","journal-title":"ACM Trans. Comput. Syst. (TOCS)"},{"key":"18_CR11","doi-asserted-by":"crossref","unstructured":"Bienia, C., Kumar, S., Singh, J.P., Li, K.: The PARSEC benchmark suite: characterization and architectural implications. In: Proceedings of the 17th International Conference on Parallel Architectures and Compilation Techniques, pp. 72\u201381. ACM (2008)","DOI":"10.1145\/1454115.1454128"},{"key":"18_CR12","doi-asserted-by":"crossref","unstructured":"Chen, C., Maniatis, P., Perrig, A., Vasudevan, A., Sekar, V.: Towards verifiable resource accounting for outsourced computation. In: Proceedings of the 9th ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments (VEE 2013) (2014)","DOI":"10.1145\/2451512.2451546"},{"issue":"2","key":"18_CR13","doi-asserted-by":"crossref","first-page":"42","DOI":"10.1145\/1330555.1330556","volume":"35","author":"L Cherkasova","year":"2007","unstructured":"Cherkasova, L., Gupta, D., Vahdat, A.: Comparison of the three CPU schedulers in Xen. SIGMnfluencingformance Eval. Rev. 35(2), 42\u201351 (2007)","journal-title":"SIGMnfluencingformance Eval. Rev."},{"key":"18_CR14","unstructured":"Columbus, L.: Roundup of cloud computing forecasts and market estimates (2016). http:\/\/www.forbes.com\/sites\/louiscolumbus\/2016\/03\/13\/roundup-of-cloud-computing-forecasts-and-market-estimates-2016\/"},{"key":"18_CR15","unstructured":"Common Vulnerability Database: VENOM: CVE-2015-3456, Xen 4.5 VM escape attack (2015)"},{"key":"18_CR16","unstructured":"Coreboot: Open-Source BIOS. http:\/\/www.coreboot.org\/"},{"key":"18_CR17","unstructured":"Domas, C.: The memory sinkhole. BlackHat, USA (2015)"},{"key":"18_CR18","unstructured":"Dragovic, B., Fraser, K., Hand, S., Harris, T., Ho, A., Pratt, I., Warfield, A., Barham, P., Neugebauer, R.: Xen and the art of virtualization. In: Proceedings of the ACM Symposium on Operating Systems Principles (2003)"},{"key":"18_CR19","doi-asserted-by":"crossref","unstructured":"Embleton, S., Sparks, S., Zou, C.: SMM rootkits: a new breed of OS independent malware. In: Proceedings of the 4th International Conference on Security and Privacy in Communication Networks (SecureComm 2008) (2008)","DOI":"10.1145\/1460877.1460892"},{"key":"18_CR20","unstructured":"Garcia, A.: Target settles for $39 million over data breach (2015). http:\/\/money.cnn.com\/2015\/12\/02\/news\/companies\/target-data-breach-settlement\/"},{"key":"18_CR21","unstructured":"Hunt, T., Zhu, Z., Xu, Y., Peter, S., Witchel, E.: Ryoan: a distributed sandbox for untrusted computation on secret data. In: 12th USENIX Symposium on Operating Systems Design and Implementation (OSDI 2016), pp. 533\u2013549. USENIX Association (2016)"},{"key":"18_CR22","unstructured":"Inci, M.S., Gulmezoglu, B., Irazoqui, G., Eisenbarth, T., Sunar, B.: Seriously, get off my cloud! Cross-VM RSA key recovery in a public cloud. Technical report, IACR Cryptology ePrint Archive (2015)"},{"key":"18_CR23","unstructured":"Intel: Intel software guard extensions programming reference (2014). https:\/\/software.intel.com\/sites\/default\/files\/managed\/48\/88\/329298-002.pdf"},{"key":"18_CR24","doi-asserted-by":"crossref","unstructured":"Jin, S., Seol, J., Huh, J., Maeng, S.: Hardware-assisted Secure Resource Accounting under a Vulnerable Hypervisor. In: Proceedings of the 11th ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments (VEE 2015) (2015)","DOI":"10.1145\/2731186.2731203"},{"key":"18_CR25","unstructured":"Kallenberg, C., Kovah, X.: How many million bioses would you like to infect? (2015). http:\/\/legbacore.com\/Research_files\/HowManyMillionBIOSesWouldYouLikeToInfect_Whitepaper_v1.pdf"},{"key":"18_CR26","unstructured":"Kelion, L.: Apple toughens iCloud security after celebrity breach (2014). http:\/\/www.bbc.com\/news\/technology-29237469"},{"key":"18_CR27","unstructured":"Kortchinsky, K.: CLOUDBURST: a VMware guest to host escape story. In: Black Hat USA (2009)"},{"key":"18_CR28","doi-asserted-by":"crossref","unstructured":"Leach, K., Spensky, C., Weimer, W., Zhang, F.: Towards transparent introspection. In: 23rd IEEE International Conference on Software Analysis, Evolution and Reengineering (2016)","DOI":"10.1109\/SANER.2016.25"},{"key":"18_CR29","unstructured":"National Institute of Standards, NIST: National vulnerability database. http:\/\/nvd.nist.gov . Accessed 10 May 2016"},{"key":"18_CR30","doi-asserted-by":"crossref","unstructured":"Prakash, A., Venkataramani, E., Yin, H., Lin. Z.: Manipulating semantic values in kernel data structures: attack assessments and implications. In: 2013 43rd Annual IEEE\/IFIP International Conference on Dependable Systems and Networks (DSN), pp. 1\u201312. IEEE (2013)","DOI":"10.1109\/DSN.2013.6575344"},{"key":"18_CR31","doi-asserted-by":"crossref","unstructured":"Ren, G., Tune, E., Moseley, T., Shi, Y., Rus, S., Hundt, R., Profiling, G.-W.: A continuous profiling infrastructure for data centers. IEEE Micro (2010)","DOI":"10.1109\/MM.2010.68"},{"key":"18_CR32","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"100","DOI":"10.1007\/978-3-319-02726-5_8","volume-title":"Information and Communications Security","author":"H Rong","year":"2013","unstructured":"Rong, H., Xian, M., Wang, H., Shi, J.: Time-stealer: a stealthy threat for virtualization scheduler and its countermeasures. In: Qing, S., Zhou, J., Liu, D. (eds.) ICICS 2013. LNCS, vol. 8233, pp. 100\u2013112. Springer, Cham (2013). doi: 10.1007\/978-3-319-02726-5_8"},{"key":"18_CR33","doi-asserted-by":"crossref","unstructured":"Schiffman, J., Kaplan, D.: The SMM rootkit revisited: fun with USB. In: Proceedings of 9th International Conference on Availability, Reliability and Security (ARES 2014) (2014)","DOI":"10.1109\/ARES.2014.44"},{"key":"18_CR34","doi-asserted-by":"crossref","unstructured":"Schuster, F., Costa, M., Fournet, C., Gkantsidis, C., Peinado, M., Mainar-Ruiz, G., Russinovich, M.: Vc3: trustworthy data analytics in the cloud using SGX. In: 2015 IEEE Symposium on Security and Privacy (SP), pp. 38\u201354. IEEE (2015)","DOI":"10.1109\/SP.2015.10"},{"key":"18_CR35","doi-asserted-by":"crossref","unstructured":"Varadarajan, V., Kooburat, T., Farley, B., Ristenpart, T., Swift, M.M.: Resource-freeing attacks: improve your cloud performance (at your neighbor\u2019s expense). In: Proceedings of the 2012 ACM conference on Computer and communications security, pp. 281\u2013292. ACM (2012)","DOI":"10.1145\/2382196.2382228"},{"key":"18_CR36","unstructured":"VMware Inc.: vCenter chargeback manager. https:\/\/www.vmware.com\/products\/vcenter-chargeback"},{"key":"18_CR37","first-page":"1","volume":"10","author":"H Wang","year":"2010","unstructured":"Wang, H., Jing, Q., Chen, R., He, B., Qian, Z., Zhou, L.: Distributed systems meet economics: pricing in the cloud. HotCloud 10, 1\u20136 (2010)","journal-title":"HotCloud"},{"key":"18_CR38","doi-asserted-by":"crossref","unstructured":"Wang, J., Sun, K., Stavrou, A.: A dependability analysis of hardware-assisted polling integrity checking systems. In: Proceedings of the 42nd Annual IEEE\/IFIP International Conference on Dependable Systems and Networks (DSN 2012) (2012)","DOI":"10.1109\/DSN.2012.6263962"},{"key":"18_CR39","doi-asserted-by":"crossref","unstructured":"Wang, L., Zhan, J., Luo, C., Zhu, Y., Yang, Q., He, Y., Gao, W., Jia, Z., Shi, Y., Zhang, S., et al.: Bigdatabench: a big data benchmark suite from internet services. In: 2014 IEEE 20th International Symposium on High Performance Computer Architecture (HPCA), pp. 488\u2013499. IEEE (2014)","DOI":"10.1109\/HPCA.2014.6835958"},{"key":"18_CR40","doi-asserted-by":"crossref","unstructured":"Weiser, S., Werner, M.: SGXIO: generic trusted I\/O path for Intel SGX. In: Proceedings of the Seventh ACM on Conference on Data and Application Security and Privacy (CODASPY 2017), pp. 261\u2013268, New York. ACM (2017)","DOI":"10.1145\/3029806.3029822"},{"key":"18_CR41","unstructured":"Wojtczuk, R., Rutkowska, J.: Attacking Intel trust execution technologies (2009). http:\/\/invisiblethingslab.com\/resources\/bh09dc\/Attacking%20Intel%20TXT%20-%20slides.pdf"},{"key":"18_CR42","unstructured":"Wojtczuk, R., Rutkowska, J.: Attacking SMM memory via Intel CPU cache poisoning (2009)"},{"key":"18_CR43","doi-asserted-by":"crossref","unstructured":"Zhang, F., Leach, K., Sun, K., Stavrou, A.: SPECTRE: a dependable introspection framework via system management mode. In: Proceedings of the 43rd Annual IEEE\/IFIP International Conference on Dependable Systems and Networks (DSN 2013) (2013)","DOI":"10.1109\/DSN.2013.6575343"},{"key":"18_CR44","doi-asserted-by":"crossref","unstructured":"Zhang, F., Leach, K., Wang, H., Stavrou, A.: Trustlogin: securing password-login on commodity operating systems. In: Proceedings of the 10th ACM Symposium on Information, Computer and Communications Security, pp. 333\u2013344. ACM (2015)","DOI":"10.1145\/2714576.2714614"},{"key":"18_CR45","doi-asserted-by":"crossref","unstructured":"Zhang, F., Leach, K., Wang, H., Stavrou, A., Sun, K.: Using hardware features for increased debugging transparency. In: Proceedings of the 36th IEEE Symposium on Security and Privacy (2015)","DOI":"10.1109\/SP.2015.11"},{"key":"18_CR46","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"219","DOI":"10.1007\/978-3-319-11203-9_13","volume-title":"Computer Security - ESORICS 2014","author":"F Zhang","year":"2014","unstructured":"Zhang, F., Wang, H., Leach, K., Stavrou, A.: A framework to secure peripherals at runtime. In: Kuty\u0142owski, M., Vaidya, J. (eds.) ESORICS 2014. LNCS, vol. 8712, pp. 219\u2013238. Springer, Cham (2014). doi: 10.1007\/978-3-319-11203-9_13"},{"key":"18_CR47","doi-asserted-by":"crossref","unstructured":"Zhang, F., Wang, J., Sun, K., Stavrou, A.: HyperCheck: a hardware-assisted integrity monitor. In: IEEE Transactions on Dependable and Secure Computing (2013)","DOI":"10.21236\/ADA589948"},{"key":"18_CR48","unstructured":"Zhang, T., Zhang, Y., Lee, R.B.: Memory dos attacks in multi-tenant clouds: Severity and mitigation. arXiv preprint arXiv:1603.03404 (2016)"},{"issue":"4","key":"18_CR49","doi-asserted-by":"crossref","first-page":"533","DOI":"10.3233\/JCS-130474","volume":"21","author":"F Zhou","year":"2013","unstructured":"Zhou, F., Goel, M., Desnoyers, P., Sundaram, R.: Scheduler vulnerabilities and coordinated attacks in cloud computing. J. Comput. Secur. 21(4), 533\u2013559 (2013)","journal-title":"J. Comput. Secur."}],"container-title":["Lecture Notes in Computer Science","Research in Attacks, Intrusions, and Defenses"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-66332-6_18","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,10,4]],"date-time":"2019-10-04T09:19:07Z","timestamp":1570180747000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-66332-6_18"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2017]]},"ISBN":["9783319663319","9783319663326"],"references-count":49,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-66332-6_18","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2017]]}}}