Invention Grant
- Patent Title: Virtual machine kernel protection method and apparatus
-
Application No.: US16013950Application Date: 2018-06-21
-
Publication No.: US10754943B2Publication Date: 2020-08-25
- Inventor: Rongfei Wan , Xingshu Chen
- Applicant: HUAWEI TECHNOLOGIES CO., LTD.
- Applicant Address: CN Shenzhen
- Assignee: HUAWEI TECHNOLOGIES CO., LTD.
- Current Assignee: HUAWEI TECHNOLOGIES CO., LTD.
- Current Assignee Address: CN Shenzhen
- Agency: Kilpatrick Townsend & Stockton LLP
- Priority: com.zzzhc.datahub.patent.etl.us.BibliographicData$PriorityClaim@76921412
- Main IPC: G06F9/455
- IPC: G06F9/455 ; G06F21/53

Abstract:
A virtual machine kernel protection method and apparatus are disclosed. The method includes: trapping a system call function initiated by an application program (S301); and pointing the system call function to a shadow kernel based on an offset value between a base address of an original kernel of a virtual machine and a base address of the shadow kernel, and determining a corresponding entry address of the system call function in the shadow kernel based on a shadow SSDT in the shadow kernel (S302), where the shadow kernel is constructed in a nonpaged pool of the original kernel of the virtual machine, and the shadow kernel is executable kernel code constructed based on an image file of the original kernel of the virtual machine.
Public/Granted literature
- US20180314822A1 VIRTUAL MACHINE KERNEL PROTECTION METHOD AND APPARATUS Public/Granted day:2018-11-01
Information query