Visible to the public Secure, Consistent, and High-Performance Memory Snapshotting

TitleSecure, Consistent, and High-Performance Memory Snapshotting
Publication TypeConference Paper
Year of Publication2018
AuthorsCox, Guilherme, Yan, Zi, Bhattacharjee, Abhishek, Ganapathy, Vinod
Conference NameProceedings of the Eighth ACM Conference on Data and Application Security and Privacy
PublisherACM
ISBN Number978-1-4503-5632-9
KeywordsCloud Security, Forensics, hardware security, human factors, malware and unwanted software, Metrics, pubcrawl, Scalability, Tamper resistance
Abstract

Many security and forensic analyses rely on the ability to fetch memory snapshots from a target machine. To date, the security community has relied on virtualization, external hardware or trusted hardware to obtain such snapshots. These techniques either sacrifice snapshot consistency or degrade the performance of applications executing atop the target. We present SnipSnap, a new snapshot acquisition system based on on-package DRAM technologies that offers snapshot consistency without excessively hurting the performance of the target's applications. We realize SnipSnap and evaluate its benefits using careful hardware emulation and software simulation, and report our results.

URLhttps://dl.acm.org/citation.cfm?doid=3176258.3176325
DOI10.1145/3176258.3176325
Citation Keycox_secure_2018