Multipersona Hypovisors: Securing Mobile Devices through High-Performance Light-Weight Subsystem Isolation

dc.contributor.authorKrishan, Neelimaen
dc.contributor.authorHitefield, Seth D.en
dc.contributor.authorClancy, Thomas Charles IIIen
dc.contributor.authorMcGwier, Robert W.en
dc.contributor.authorTront, Joseph G.en
dc.contributor.departmentComputer Scienceen
dc.date.accessioned2013-06-28T21:44:12Zen
dc.date.available2013-06-28T21:44:12Zen
dc.date.issued2013-06-28en
dc.description.abstractWe propose and detail a system called multipersona Hypovisors for providing light-weight isolation for enhancing security on Multipersona mobile devices, particularly with respect to the current memory constraints of these devices. Multipersona Hypovisors leverage Linux kernel cGroups and namespaces to establish independent process container, al-lowing isolation of the Multipersona process tree from other simultaneous instances of Multipersona and the hypovisor which is an underlying Angstrom-based embedded Linux distributions designed to add additional security to the system. The system incorporates a wide range of data integrity tools in the embedded hypovisor, and an SE Linux-enabled kernel for mandatory access control and integrity tools for transparent auditing of running Multipersona instances. A prototype is presented which uses integrity tools external to the Multipersona container to audit it for malicious activity, and also has the ability to support a multipersona environment with multiple encrypted personas existing individually or simultaneously on the device. Two versions are demonstrated, one which allows cold-swapping of personas for high-assurance scenarios and also one that supports hot-swapping. Analysis shows that the hypovisor has a 40-50 MB impact on the overall memory footprint for the system.en
dc.format.mimetypeapplication/pdfen
dc.identifier.trnumberTR-13-02en
dc.identifier.urihttp://hdl.handle.net/10919/23280en
dc.language.isoenen
dc.publisherDepartment of Computer Science, Virginia Polytechnic Institute & State Universityen
dc.relation.ispartofComputer Science Technical Reportsen
dc.rightsIn Copyrighten
dc.rights.urihttp://rightsstatements.org/vocab/InC/1.0/en
dc.subjectNetworksen
dc.subjectCyber security and privacyen
dc.titleMultipersona Hypovisors: Securing Mobile Devices through High-Performance Light-Weight Subsystem Isolationen
dc.typeTechnical reporten
dc.type.dcmitypeTexten

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
TR_06_26_Android_Hypovisors_NKrishnan.pdf
Size:
400.87 KB
Format:
Adobe Portable Document Format
License bundle
Now showing 1 - 1 of 1
Name:
license.txt
Size:
1.5 KB
Format:
Item-specific license agreed upon to submission
Description: