{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,7]],"date-time":"2024-09-07T17:36:40Z","timestamp":1725730600651},"publisher-location":"Berlin, Heidelberg","reference-count":44,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642389078"},{"type":"electronic","value":"9783642389085"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-3-642-38908-5_2","type":"book-chapter","created":{"date-parts":[[2013,6,9]],"date-time":"2013-06-09T22:18:23Z","timestamp":1370816303000},"page":"19-36","source":"Crossref","is-referenced-by-count":9,"title":["Guardian: Hypervisor as Security Foothold for Personal Computers"],"prefix":"10.1007","author":[{"given":"Yueqiang","family":"Cheng","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xuhua","family":"Ding","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"2_CR1","unstructured":"AMD. Secure virtual machine architecture reference manual. Technical report (2005)"},{"issue":"3-4","key":"2_CR2","doi-asserted-by":"publisher","first-page":"475","DOI":"10.1147\/rd.483.0475","volume":"48","author":"T.W. Arnold","year":"2004","unstructured":"Arnold, T.W., Van Doom, L.P.: The IBM PCIXCC: a new cryptographic coprocessor for the IBM eserver. IBM J. Res. Dev.\u00a048(3-4), 475\u2013487 (2004)","journal-title":"IBM J. Res. Dev."},{"key":"2_CR3","doi-asserted-by":"publisher","first-page":"461","DOI":"10.1109\/ACSAC.2009.50","volume-title":"Proceedings of the 2009 Annual Computer Security Applications Conference, ACSAC 2009","author":"A.M. Azab","year":"2009","unstructured":"Azab, A.M., Ning, P., Sezer, E.C., Zhang, X.: HIMA: A hypervisor-based integrity measurement agent. In: Proceedings of the 2009 Annual Computer Security Applications Conference, ACSAC 2009, pp. 461\u2013470. IEEE Computer Society, Washington, DC (2009)"},{"key":"2_CR4","doi-asserted-by":"publisher","first-page":"38","DOI":"10.1145\/1866307.1866313","volume-title":"Proceedings of the 17th ACM Conference on Computer and Communications Security, CCS 2010","author":"A.M. Azab","year":"2010","unstructured":"Azab, A.M., Ning, P., Wang, Z., Jiang, X., Zhang, X., Skalsky, N.C.: Hypersentry: enabling stealthy in-context measurement of hypervisor integrity. In: Proceedings of the 17th ACM Conference on Computer and Communications Security, CCS 2010, pp. 38\u201349. ACM, New York (2010)"},{"key":"2_CR5","doi-asserted-by":"crossref","unstructured":"Butler, K.R.B., McLaughlin, S., Moyer, T., McDaniel, P.D.: New security architectures based on emerging disk functionality. IEEE Security and Privacy Magazine (September 2010)","DOI":"10.1109\/MSP.2010.90"},{"key":"2_CR6","doi-asserted-by":"crossref","unstructured":"Champagne, D., Lee, R.B.: Scalable architectural support for trusted software. In: Jacob, M.T., Das, C.R., Bose, P. (eds.) HPCA, pp. 1\u201312. IEEE Computer Society (2010)","DOI":"10.1109\/HPCA.2010.5416657"},{"key":"2_CR7","doi-asserted-by":"crossref","unstructured":"Chen, X., Garfinkel, T., Christopher Lewis, E., Subrahmanyam, P., Waldspurger, C.A., Boneh, D., Dwoskin, J., Ports, D.R.K.: Overshadow: A virtualization-based approach to retrofitting protection in commodity operating systems. In: Proceedings of the 13th International Conference on Architectural Support for Programming Languages and Operating Systems, ASPLOS 2008, Seattle, WA, USA (March 2008)","DOI":"10.1145\/1346281.1346284"},{"key":"2_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"201","DOI":"10.1007\/978-3-642-30921-2_12","volume-title":"Trust and Trustworthy Computing","author":"Y. Cheng","year":"2012","unstructured":"Cheng, Y., Ding, X.: Virtualization based password protection against malware in untrusted operating systems. In: Katzenbeisser, S., Weippl, E., Camp, L.J., Volkamer, M., Reiter, M., Zhang, X. (eds.) Trust 2012. LNCS, vol.\u00a07344, pp. 201\u2013218. Springer, Heidelberg (2012)"},{"key":"2_CR9","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"227","DOI":"10.1007\/978-3-642-23822-2_13","volume-title":"Computer Security \u2013 ESORICS 2011","author":"Y. Cheng","year":"2011","unstructured":"Cheng, Y., Ding, X., Deng, R.H.: Driverguard: a fine-grained protection on I\/O flows. In: Atluri, V., Diaz, C. (eds.) ESORICS 2011. LNCS, vol.\u00a06879, pp. 227\u2013244. Springer, Heidelberg (2011)"},{"key":"2_CR10","unstructured":"Eldefrawy, K., Francillon, A., Perito, D., Tsudik, G.: SMART: Secure and Minimal Architecture for (Establishing a Dynamic) Root of Trust. In: Proceedings of the 19th Annual Network and Distributed System Security Symposium, San Diego, USA, February 5-8 (2012)"},{"key":"2_CR11","unstructured":"Fleming, S.: Accessing pci express configuration registers using intel chipsets. otechnical report (2008)"},{"key":"2_CR12","doi-asserted-by":"crossref","first-page":"193","DOI":"10.1145\/945445.945464","volume-title":"Proceedings of the 9th ACM Symposium on Operating Systems Principles","author":"T. Garfinkel","year":"2003","unstructured":"Garfinkel, T., Pfaff, B., Chow, J., Rosenblum, M., Boneh, D.: Terra: a virtual machine-based platform for trusted computing. In: Proceedings of the 9th ACM Symposium on Operating Systems Principles, pp. 193\u2013206. ACM, New York (2003)"},{"key":"2_CR13","series-title":"LNICST","doi-asserted-by":"publisher","first-page":"162","DOI":"10.1007\/978-3-642-16161-2_10","volume-title":"Security and Privacy in Communication Networks","author":"M. Grace","year":"2010","unstructured":"Grace, M., Wang, Z., Srinivasan, D., Li, J., Jiang, X., Liang, Z., Liakh, S.: Transparent protection of commodity OS kernels using hardware virtualization. In: Jajodia, S., Zhou, J. (eds.) SecureComm 2010. LNICST, vol.\u00a050, pp. 162\u2013180. Springer, Heidelberg (2010)"},{"key":"2_CR14","unstructured":"Hewleet-Packard, Intel, Microsoft, Phoenix, and Toshiba. Advanced configuration and power interface specification. (Revision 3.0b) (October 2006)"},{"key":"2_CR15","unstructured":"Intel. Universal host controller interface (UHCI) design guide (March 1996)"},{"key":"2_CR16","unstructured":"Intel. Enhanced host controller interface specification for universal serial bus (March 2002)"},{"key":"2_CR17","unstructured":"Intel. Intel I\/O controller hub 9 (ICH9) family datasheet (2008)"},{"key":"2_CR18","unstructured":"Intel. Intel Trusted Execution Technology (Intel TXT) software development guide (December 2009)"},{"key":"2_CR19","first-page":"350","volume-title":"Proceedings of the 37th Annual International Symposium on Computer Architecture, ISCA 2010","author":"E. Keller","year":"2010","unstructured":"Keller, E., Szefer, J., Rexford, J., Lee, R.B.: Nohype: virtualized cloud infrastructure without the virtualization. In: Proceedings of the 37th Annual International Symposium on Computer Architecture, ISCA 2010, pp. 350\u2013361. ACM, New York (2010)"},{"key":"2_CR20","first-page":"3","volume-title":"Proceedings of the 18th ACM Conference on Computer and Communications Security, CCS 2011","author":"Y. Li","year":"2011","unstructured":"Li, Y., McCune, J.M., Perrig, A.: Viper: verifying the integrity of peripherals\u2019 firmware. In: Proceedings of the 18th ACM Conference on Computer and Communications Security, CCS 2011, pp. 3\u201316. ACM, New York (2011)"},{"key":"2_CR21","doi-asserted-by":"publisher","first-page":"143","DOI":"10.1109\/SP.2010.17","volume-title":"Proceedings of the 2010 IEEE Symposium on Security and Privacy","author":"J.M. McCune","year":"2010","unstructured":"McCune, J.M., Li, Y., Qu, N., Zhou, Z., Datta, A., Gligor, V., Perrig, A.: Trustvisor: Efficient TCB reduction and attestation. In: Proceedings of the 2010 IEEE Symposium on Security and Privacy, pp. 143\u2013158. IEEE Computer Society, Washington, DC (2010)"},{"key":"2_CR22","doi-asserted-by":"crossref","unstructured":"McCune, J.M., Parno, B., Perrig, A., Reiter, M.K., Isozaki, H.: Flicker: An execution infrastructure for TCB minimization. In: Proceedings of the ACM European Conference in Computer Systems (EuroSys) (April 2008)","DOI":"10.1145\/1352592.1352625"},{"key":"2_CR23","doi-asserted-by":"publisher","first-page":"451","DOI":"10.1109\/ACSAC.2009.49","volume-title":"Proceedings of the 2009 Annual Computer Security Applications Conference, ACSAC 2009","author":"D.A.S. Oliveira de","year":"2009","unstructured":"de Oliveira, D.A.S., Felix Wu, S.: Protecting kernel code and data with a virtualization-aware collaborative operating system. In: Proceedings of the 2009 Annual Computer Security Applications Conference, ACSAC 2009, pp. 451\u2013460. IEEE Computer Society, Washington, DC (2009)"},{"key":"2_CR24","unstructured":"Rafal, W., Joanna, R., Alexander, T.: Xen 0wning trilogy, Black Hat conference (2008)"},{"key":"2_CR25","unstructured":"Rick, J.: Network Performance Benchmark Tool - Netpref, http:\/\/www.netperf.org\/netperf\/"},{"key":"2_CR26","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-540-87403-4_1","volume-title":"Recent Advances in Intrusion Detection","author":"R. Riley","year":"2008","unstructured":"Riley, R., Jiang, X., Xu, D.: Guest-transparent prevention of kernel rootkits with VMM-based memory shadowing. In: Lippmann, R., Kirda, E., Trachtenberg, A. (eds.) RAID 2008. LNCS, vol.\u00a05230, pp. 1\u201320. Springer, Heidelberg (2008)"},{"key":"2_CR27","first-page":"85","volume-title":"Proceedings of the 5th ACM Workshop on Wireless Security, WiSe 2006","author":"A. Seshadri","year":"2006","unstructured":"Seshadri, A., Luk, M., Perrig, A., van Doorn, L., Khosla, P.: Scuba: Secure code update by attestation in sensor networks. In: Proceedings of the 5th ACM Workshop on Wireless Security, WiSe 2006, pp. 85\u201394. ACM, New York (2006)"},{"key":"2_CR28","doi-asserted-by":"publisher","first-page":"335","DOI":"10.1145\/1294261.1294294","volume-title":"Proceedings of Twenty-First ACM SIGOPS Symposium on Operating Systems Principles, SOSP 2007","author":"A. Seshadri","year":"2007","unstructured":"Seshadri, A., Luk, M., Qu, N., Perrig, A.: Secvisor: a tiny hypervisor to provide lifetime kernel code integrity for commodity OSes. In: Proceedings of Twenty-First ACM SIGOPS Symposium on Operating Systems Principles, SOSP 2007, pp. 335\u2013350. ACM, New York (2007)"},{"key":"2_CR29","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/1095810.1095812","volume-title":"Proceedings of the Twentieth ACM Symposium on Operating Systems Principles, SOSP 2005","author":"A. Seshadri","year":"2005","unstructured":"Seshadri, A., Luk, M., Shi, E., Perrig, A., van Doorn, L., Khosla, P.: Pioneer: verifying code integrity and enforcing untampered code execution on legacy systems. In: Proceedings of the Twentieth ACM Symposium on Operating Systems Principles, SOSP 2005, pp. 1\u201316. ACM, New York (2005)"},{"key":"2_CR30","unstructured":"Seshadri, A., Perrig, A., van Doorn, L., Khosla, P.K.: SWATT: Software-based attestation for embedded devices. In: IEEE Symposium on Security and Privacy (2004)"},{"key":"2_CR31","doi-asserted-by":"publisher","first-page":"121","DOI":"10.1145\/1508293.1508311","volume-title":"Proceedings of the 2009 ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, VEE 2009","author":"T. Shinagawa","year":"2009","unstructured":"Shinagawa, T., Eiraku, H., Tanimoto, K., Omote, K., Hasegawa, S., Horie, T., Hirano, M., Kourai, K., Oyama, Y., Kawai, E., Kono, K., Chiba, S., Shinjo, Y., Kato, K.: Bitvisor: a thin hypervisor for enforcing I\/O device security. In: Proceedings of the 2009 ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, VEE 2009, pp. 121\u2013130. ACM, New York (2009)"},{"key":"2_CR32","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"39","DOI":"10.1007\/978-3-540-87403-4_3","volume-title":"Recent Advances in Intrusion Detection","author":"A. Srivastava","year":"2008","unstructured":"Srivastava, A., Giffin, J.: Tamper-resistant, application-aware blocking of malicious network connections. In: Lippmann, R., Kirda, E., Trachtenberg, A. (eds.) RAID 2008. LNCS, vol.\u00a05230, pp. 39\u201358. Springer, Heidelberg (2008)"},{"key":"2_CR33","doi-asserted-by":"crossref","unstructured":"Steinberg, U., Kauer, B.: Nova: A microhypervisor-based secure virtualization architecture. In: Proceedings of the European Conference on Computer Systems (2010)","DOI":"10.1145\/1755913.1755935"},{"key":"2_CR34","doi-asserted-by":"publisher","first-page":"2","DOI":"10.1145\/2382196.2382200","volume-title":"Proceedings of the 2012 ACM Conference on Computer and Communications Security, CCS 2012","author":"R. Strackx","year":"2012","unstructured":"Strackx, R., Piessens, F.: Fides: selectively hardening software application components against kernel-level or process-level malware. In: Proceedings of the 2012 ACM Conference on Computer and Communications Security, CCS 2012, pp. 2\u201313. ACM, New York (2012)"},{"key":"2_CR35","unstructured":"Sun, K., Wang, J., Zhang, F., Stavrou, A.: SecureSwitch: BIOS-assisted isolation and switch between trusted and untrusted commodity OSes. In: Proceedings of the 19th Annual Network and Distributed System Security Symposium, San Diego, California, USA (2012)"},{"key":"2_CR36","unstructured":"Phoenix Technologies: Trustedcore: Foundation for secure CRTM and BIOS implementation (2006), https:\/\/forms.phoenix.com\/whitepaperdownload-\/docs\/trustedcore_wp.pdf"},{"key":"2_CR37","unstructured":"Trusted Computing Group: TPM main specification. Main Specification Version 1.2 rev. 85 (February 2005)"},{"key":"2_CR38","unstructured":"Vasudevan, A., Parno, B., Qu, N., Gligor, V.D., Perrig, A.: Lockdown: A safe and practical environment for security applications (CMU-Cylab-09-011) (2009)"},{"key":"2_CR39","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"158","DOI":"10.1007\/978-3-642-15512-3_9","volume-title":"Recent Advances in Intrusion Detection","author":"J. Wang","year":"2010","unstructured":"Wang, J., Stavrou, A., Ghosh, A.: HyperCheck: A hardware-assisted integrity monitor. In: Jha, S., Sommer, R., Kreibich, C. (eds.) RAID 2010. LNCS, vol.\u00a06307, pp. 158\u2013177. Springer, Heidelberg (2010)"},{"key":"2_CR40","doi-asserted-by":"publisher","first-page":"380","DOI":"10.1109\/SP.2010.30","volume-title":"Proceedings of the 2010 IEEE Symposium on Security and Privacy, SP 2010","author":"Z. Wang","year":"2010","unstructured":"Wang, Z., Jiang, X.: Hypersafe: A lightweight approach to provide lifetime hypervisor control-flow integrity. In: Proceedings of the 2010 IEEE Symposium on Security and Privacy, SP 2010, pp. 380\u2013395. IEEE Computer Society, Washington, DC (2010)"},{"key":"2_CR41","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"21","DOI":"10.1007\/978-3-540-87403-4_2","volume-title":"Recent Advances in Intrusion Detection","author":"Z. Wang","year":"2008","unstructured":"Wang, Z., Jiang, X., Cui, W., Wang, X.: Countering persistent kernel rootkits through systematic hook discovery. In: Lippmann, R., Kirda, E., Trachtenberg, A. (eds.) RAID 2008. LNCS, vol.\u00a05230, pp. 21\u201338. Springer, Heidelberg (2008)"},{"key":"2_CR42","unstructured":"Xiong, X., Tian, D., Liu, P.: Practical protection of kernel integrity for commodity os from untrusted extensions. NDSS (2011)"},{"key":"2_CR43","doi-asserted-by":"publisher","first-page":"71","DOI":"10.1145\/1346256.1346267","volume-title":"Proceedings of the Fourth ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, VEE 2008","author":"J. Yang","year":"2008","unstructured":"Yang, J., Shin, K.G.: Using hypervisor to provide data secrecy for user applications on a per-page basis. In: Proceedings of the Fourth ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, VEE 2008, pp. 71\u201380. ACM, New York (2008)"},{"key":"2_CR44","doi-asserted-by":"crossref","unstructured":"Zhou, Z., Gligor, V.D., Newsome, J., McCune, J.M.: Building verifiable trusted path on commodity x86 computers. In: Proceedings of the IEEE Symposium on Security and Privacy (May 2012)","DOI":"10.1109\/SP.2012.42"}],"container-title":["Lecture Notes in Computer Science","Trust and Trustworthy Computing"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-38908-5_2","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,2,24]],"date-time":"2022-02-24T10:22:54Z","timestamp":1645698174000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-38908-5_2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013]]},"ISBN":["9783642389078","9783642389085"],"references-count":44,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-38908-5_2","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2013]]}}}