Towards a Distributed, Self-organising Approach to Malware Detection in Cloud Computing
Cloud computing is an increasingly popular platform for both industry and consumers. The cloud presents a number of unique security issues, such as a high level of distribution and system homogeneity, which require special consideration. In this paper we introduce a resilience architecture consisting of a collection of self-organising resilience managers distributed within the infrastructure of a cloud. More specifically we illustrate the applicability of our proposed architecture under the scenario of malware detection. We describe our multi-layered solution at the hypervisor level of the cloud nodes and consider how malware detection can be distributed to each node.
KeywordsCloud Computing Cloud Environment Physical Machine Cloud Node Anomaly Detection Technique
- 1.Marnerides, A.K., Pezaros, D.P., Hutchison, D.: Detection and mitigation of abnormal traffic behaviour in autonomic networked environments. In: Proceedings of ACM SIGCOMM CoNEXT Conference 2008 (2008)Google Scholar
- 2.Marnerides, A., Pezaros, D., Hutchison, D.: Autonomic diagnosis of Anomalous network traffic. In: Proceedings of IEEE WoWMoM 2010 (2010)Google Scholar
- 3.Citrix Systems, Inc., Xen, http://www.xen.org/
- 4.Payne, B.D.: LibVMI, http://code.google.com/p/vmitools/wiki/LibVMIIntroduction