The Great Arms Race For Security: Virtualization

The Great Arms Race For Security: Virtualization

Since its infancy in the early seventies when the first computer virus was created, the malware and anti-malware business has grown into multi-billion dollar industries. No longer are script kiddies creating malware for notoriety, instead the malware industry is run by organized criminals who invest time and money in new technologies and methods to compromise systems for profit.

The evolution of malware is the driver for the progress of security. Malware propagation has gone from floppy disks, to email attachments, and on to remote exploits of vulnerabilities. Malicious software itself has become more sophisticated by using kernel-level code to hide as rootkits, effectively moving down the stack. The result: an ‘arms race’ between organized criminals and security vendors. Each party reacts to changes in the industry to gain the upper hand. Take for example the growth in broadband adoption since the early 2000’s. As broadband adoption grew so too did the number of endpoints in botnets.

Security vendors process in excess of 4 billion requests per day to stop malware from propagating. However, the basic fundamentals of security have not changed in over 20 years. Malware takes advantage of exploiting vulnerabilities in operating systems and applications that run in them. The key point is that security solutions are implemented to stop malware within an operating system; however there is no such thing as a full-proof system. Security solutions operate within the confines of an operating system privilege structure. When attempting to inspect the system it is impossible to guarantee the integrity of the execution space of the security software running in the same execution space as malware. Therefore, beyond the question of whether or not a system has been compromised, it is a matter of what has not been found. With this in mind, the challenge for the security industry is to make the cost of attack so expensive that organized criminals choose different easier methods – for example basic social engineering techniques like a 451 scam.

Just as the rise of the Internet provided new opportunities for attackers, so too has virtualization and cloud technologies provided both security experts and attackers with new opportunities. With cloud computing the security challenge is even further exacerbated simply because end-users do not have access to the underlying infrastructure. Understanding how changing the infrastructure beneath endpoints affects endpoint security is elemental for security strategies. With all the benefits that virtualization brings, there are also new risks. Side channel exploitation, where a virtual machine is attacked from a neighboring virtual machine via a vulnerability are possible. This is simply due to the fact that multiple virtual machines share the same hardware via the hypervisor. In the case of cloud computing where multi-tenancy is the norm, there is no assurance that the end-user controlling a neighboring virtual machine has malicious intentions or not.

Virtualization and cloud computing is changing the security industry, both from a technology standpoint and the way it is consumed. With the benefits of a pay-as-you-grow model that cloud computing offers, end-users are able to quickly deploy IT infrastructure that addresses the business need without a large capital outlay. The security industry is evolving to meet this same licensing model requirements. However, even by meeting the needs of end-user license model requirements in the cloud; the challenge still remains the same. It is impossible to guarantee the integrity of the execution space of the security software running in the same execution space as threats.

With virtualization technology we now have the opportunity to exponentially raise the cost of attack on a system by gaining full visibility into the entire stack.

By utilizing hypervisor introspection technology it is possible to ensure the integrity of critical operating system areas, like the kernel for example. Through these introspective techniques threats are prevented from hiding or executing certain payloads within an operating system. Hypervisor introspection provides the security industry with the tooling to exponentially raise the cost of attack, by gaining full visibility into the execution space without operating in the same space that threats operate in. Similar to the movie “Minority report” where in the future criminals are arrested before they commit a crime, so too does virtualization technology enable security vendors to gain full visibility into systems and operate outside of the execution space that threats exist in.

By Gavin Hill, director of virtualization and cloud security research, Bitdefender

For over a decade, Gavin Hill has been the driver of security technologies for global organizations in markets that encompass North America, Europe, and Asia. With extensive technical-to-business experience that spans development, product management, and marketing, Hill has a proven record of success in driving first-to-market solutions. At Bitdefender, Hill is leading the product management and product marketing groups for virtualization and cloud security solutions.

About CloudTweaks

Established in 2009, CloudTweaks is recognized as one of the leading authorities in connected technology information and services.

We embrace and instill thought leadership insights, relevant and timely news related stories, unbiased benchmark reporting as well as offer green/cleantech learning and consultive services around the world.

Our vision is to create awareness and to help find innovative ways to connect our planet in a positive eco-friendly manner.

In the meantime, you may connect with CloudTweaks by following and sharing our resources.

View All Articles

Sorry, comments are closed for this post.

4 Things To Know Before Virtualizing Your Desktops

4 Things To Know Before Virtualizing Your Desktops

Forrester Research: The Keys to a Successful Deployment Desktop virtualization projects are transformational. They can dramatically minimize IT costs while better empowering workers with more ubiquitous access to the applications and data they need to be productive. In fact, according to recent research by Forrester, worker productivity when working remotely across multiple devices, increased 51%…

Cost of the Cloud: Is It Really Worth It?

Cost of the Cloud: Is It Really Worth It?

Cost of the Cloud Cloud computing is more than just another storage tier. Imagine if you’re able to scale up 10x just to handle seasonal volumes or rely on a true disaster-recovery solution without upfront capital. Although the pay-as-you-go pricing model of cloud computing makes it a noticeable expense, it’s the only solution for many…

5 Companies That Took On The Small Business Cloud – And Won

5 Companies That Took On The Small Business Cloud – And Won

The Small Business Cloud We take a look at 5 world-leading tech companies that have brought ground-breaking new cloud services to SMEs  Plenty of organisations have broken into new markets with innovative cloud-based products. Discover which companies have successfully taken on the small business Cloud. Cloud based computer systems are ideally suited to support the…

IoT (Internet of Things) – Don’t Forget The Milk

IoT (Internet of Things) – Don’t Forget The Milk

Don’t Forget The Milk More on the Internet of Bling and some thoughts on the IoT of tomorrow… Last month I talked about the wearable IoT concept of the Internet of Bling. So what is more fashionable than an LED that blinks different colors based on the ambient temperature of the room? Blue when the…

Are You Sure You Are Ready For The Cloud?: Cloud as a Datacenter

Are You Sure You Are Ready For The Cloud?: Cloud as a Datacenter

Cloud as a Datacenter Through my job as a Cloud Architect during the day, I run into a lot of scenarios that I think would be important to write about. Not that they are of major importance to others, but a way for people to learn from real world experience. This month, it had to…

5 Reasons Why The U.S. Dominates The Digital World!

5 Reasons Why The U.S. Dominates The Digital World!

U.S. Dominates The Digital World! I have spent about half my working life in the US and the other half in Europe. During this time (25 years) it has been exciting to see digital trends over the years. There has never been a doubt that the US has been a dominant power in anything digital…

Did The FBI Make A Mistake In Publicly Fighting Apple?

Did The FBI Make A Mistake In Publicly Fighting Apple?

Dropping The Gloves: The FBI vs Apple Unless you live in a completely disconnected bubble, you’ve heard all about the recent battle between Apple and the FBI. You’ve heard the arguments from different sides —you’ve probably even debated on one side or the other. Some argued that Apple was right because nothing should come above…

CloudTweaks is recognized as one of the leading influencers in cloud computing, infosec, big data and the internet of things (IoT) information. Our goal is to continue to build our growing information portal by providing the best in-depth articles, interviews, event listings, whitepapers, infographics and much more.

Sponsor