• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
Virtualization.com

Virtualization.com

News and insights from the vibrant world of virtualization and cloud computing

  • News
  • Featured
  • Partnerships
  • People
  • Acquisitions
  • Guest Posts
  • Interviews
  • Videos
  • Funding

Blackhat

0wning Xen?

August 11, 2008 by Kris Buytaert 1 Comment

InvisibleThings.org posted some more details on their Xen Owning Trilogy session at last weeks Black Hat conference in Las Vegas.

Joanna Rutkowska and her crew gave a series of 3 talks discussing different potential security issues with Xen. With the VirtSec awareness growing this obviously is an important topic .

When quickly skimming trough the presentations the big question that arise is , how relevant is this all for a day to day production environment. Given the fact that some exploits assume you already root before you can install a stealth backdoor and others rely on specific hardware features that might or might not be available in your setup things might be that critical yet.

All 3 talks can be found on the Invisiblethingslab.com site

Virtualization.com will have a closer look at the discussed issues and we’ll be back with more detail later.

Filed Under: Guest Posts, People Tagged With: Blackhat, invisiblethings, invisiblethings labs, Joanna Rutkowska, security, virtsec, Xen

Live Virtual Machine Migration Vulnerability

March 24, 2008 by Kris Buytaert Leave a Comment

Anthony Liguori has a good summary of the Blackhat paper by Jon Oberheide, Evan Cooke and Farnam Jahanian of the University of Michigan about Xensploit .

Black Hat Logo

The idea of Xensploit is to use a Man in the Middle attack between 2 hosts performing a Live migration. The fundamental flaw is that by default Live migration of virtual machines is unencrypted or often even unauthenticated. Of course good network security practice isolates this kind of traffic in it’s own VLAN, but it shows that security is becoming a bigger issue day by day.

The vulnerability seems to be present with VMWare and Xen versions prior to 3.1 but according to Anthony not with KVM.

Filed Under: News Tagged With: Anthony Liguory, Blackhat, Evan Cooke, Farnam Jahanian, kvm, live migration, on Oberheide, vmware, vulnerability, Xen, xensploit

Primary Sidebar

Tags

acquisition application virtualization Cisco citrix Citrix Systems citrix xenserver cloud computing Dell desktop virtualization EMC financing Funding Hewlett Packard HP Hyper-V IBM industry moves intel interview kvm linux microsoft Microsoft Hyper-V Novell oracle Parallels red hat research server virtualization sun sun microsystems VDI video virtual desktop Virtual Iron virtualisation virtualization vmware VMware ESX VMWorld VMWorld 2008 VMWorld Europe 2008 Xen xenserver xensource

Recent Comments

  • C program on Red Hat Launches Virtual Storage Appliance For Amazon Web Services
  • Hamzaoui on $500 Million For XenSource, Where Did All The Money Go?
  • vijay kumar on NComputing Debuts X350
  • Samar on VMware / SpringSource Acquires GemStone Systems
  • Meo on Cisco, Citrix Join Forces To Deliver Rich Media-Enabled Virtual Desktops

Copyright © 2025 · Genesis Sample on Genesis Framework · WordPress · Log in

  • Newsletter
  • Advertise
  • Contact
  • About