Visible to the public Threats Against the Virtual Machine Environment of NFV

TitleThreats Against the Virtual Machine Environment of NFV
Publication TypeConference Paper
Year of Publication2019
AuthorsAlnaim, Abdulrahman K., Alwakeel, Ahmed M., Fernandez, Eduardo B.
Conference Name2019 2nd International Conference on Computer Applications Information Security (ICCAIS)
Date Publishedmay
PublisherIEEE
ISBN Number 978-1-7281-0108-8
Keywordsarchitectural modeling, cloud computing, Computer architecture, computer network security, Hardware, misuse patterns, network function virtualization, NFV, on-demand network functions, privilege escalation, pubcrawl, security, security reference architecture, security threats, Software, UML diagrams, Unified modeling language, virtual machine environment, Virtual machine monitors, virtual machine security, virtual machines, Virtual machining, virtualisation, virtualization, VM escape threats
Abstract

Network Function Virtualization (NFV) is an implementation of cloud computing that leverages virtualization technology to provide on-demand network functions such as firewalls, domain name servers, etc., as software services. One of the methods that help us understand the design and implementation process of such a new system in an abstract way is architectural modeling. Architectural modeling can be presented through UML diagrams to show the interaction between different components and its stakeholders. Also, it can be used to analyze the security threats and the possible countermeasures to mitigate the threats. In this paper, we show some of the possible threats that may jeopardize the security of NFV. We use misuse patterns to analyze misuses based on privilege escalation and VM escape threats. The misuse patterns are part of an ongoing catalog, which is the first step toward building a security reference architecture for NFV.

URLhttps://ieeexplore.ieee.org/document/8769561
DOI10.1109/CAIS.2019.8769561
Citation Keyalnaim_threats_2019