Authors
Behnaz Arzani, Selim Ciraci, Stefan Saroiu, Alec Wolman, Jack Stokes, Geoff Outhred, Lechao Diwu
Publication date
2020
Conference
17th USENIX Symposium on Networked Systems Design and Implementation (NSDI 20)
Pages
797-815
Description
Today, it is difficult for operators to detect compromised VMs in their data centers (DCs). Despite their benefits, the compromise detection systems operators offer are mostly unused. Operators are faced with a dilemma: allow VMs to remain unprotected, or mandate all customers use the compromise detection systems they provide. Neither is appealing: unprotected VMs can be used to attack other VMs. Many customers would view a mandate to use these detection systems as unacceptable due to privacy and performance concerns. Data from a production cloud show their compromise detection systems protect less than 5% of VMs.
Total citations
2019202020212022202320241141062
Scholar articles
B Arzani, S Ciraci, S Saroiu, A Wolman, J Stokes… - 17th USENIX Symposium on Networked Systems …, 2020