%category_title%, %blog_title%, virtualization, virtualisation, hypervisor, server virtualization, VMware, Parallels, Microsoft, Xen, Hyper-V, Citrix

About the Author

author photo

Kris Buytaert is a long time Linux and Open Source Consultant doing Linux and Open Source projects in Belgium , Europe and the rest of the universe. He is currently working for Inuits, and starting up some new projects still in stealth mode. Kris is the Co-Author of Virtualization with Xen, used to be the maintainer of the openMosix HOWTO and author of different technical publications. He is a frequent speaker at different international conferences.

See All Posts by This Author

0wning Xen?

—————————————————————————————————————

—————————————————————————————————————

InvisibleThings.org posted some more details on their Xen Owning Trilogy session at last weeks Black Hat conference in Las Vegas.

Joanna Rutkowska and her crew gave a series of 3 talks discussing different potential security issues with Xen. With the VirtSec awareness growing this obviously is an important topic .

When quickly skimming trough the presentations the big question that arise is , how relevant is this all for a day to day production environment. Given the fact that some exploits assume you already root before you can install a stealth backdoor and others rely on specific hardware features that might or might not be available in your setup things might be that critical yet.

All 3 talks can be found on the Invisiblethingslab.com site

Virtualization.com will have a closer look at the discussed issues and we’ll be back with more detail later.

Share this story on your favorite social bookmarking tool:

  • Digg
  • del.icio.us
  • StumbleUpon
  • Reddit
  • Technorati
  • Slashdot
  • description
  • Shadows
  • Fark
  • YahooMyWeb
  • NewsVine
  • TailRank
  • Simpy
  • Blue Dot
  • blogmarks
  • SphereIt
  • Ma.gnolia
  • PopCurrent
  • MisterWong
  • Scoopeo
  • Spurl
  • BlogMemes
  • PlugIM
  • De.lirio.us
  • BlinkList
  • description
---------------------------------------------------------------------------------------------------------------------
- Like Virtualization.com? Subscribe to our RSS feed or newsletter to stay up-to-date! - - Also, don't forget to check our job board for the best jobs in the virtualization industry -
---------------------------------------------------------------------------------------------------------------------

There Is 1 Response So Far. »

  1. [...] findings about Xen security as we earlier reported. [...]

Post a Response

  • Have anything to share?

    Don't hesitate to contact us with news, tips, rumours, requests for guest posts, case-studies, white papers, interview suggestions etc.
  • Global Knowledge CCNA and Virtualization Training