Безопасность информационных технологий (Mar 2015)
Detecting System of Nested Hardware Virtual Machine Monitor
Abstract
Method of nested hardware virtual machine monitor detection was proposed in this work. The method is based on HVM timing attack. In case of HVM presence in system, the number of different instruction sequences execution time values will increase. We used this property as indicator in our detection.