Powered by InformationWeek Business Technology Network
Topics:
Security
Virtualization Security
One of the big scares out there is the concept of a hypervisor being compromised, and one successful exploit would make it possible to comprise the underlying host operating system, and permit unauthorized access to each and every hosted VM on the host server. In an event like this, current antivirus tools may not be able to spot malicious processes or software. And there you have it, one exploit and it's possible to "own" all five, 10, or more hosted machines. Or maybe even hundreds in a clustered environment. That certainly wouldn't be a good day in the life of any CISO. While the scale of these (so far theoretical) threats are greater than compromising a single server, the threats against the hypervisor are not really any different than vulnerabilities that enable attackers to gain access to physical servers. Fixating on the security of the hypervisor itself is akin to taking a long, hard drag off of a cigarette while looking up at the sky and worrying about an asteroid strike. Sure, it could happen. But it's the lack of taking care of the basics that will probably bring you down. So, rather than obsessing over hypervisor attacks, it's best to make sure that all of the software running on top of it is snugly patched. That the intra-VM traffic is vetted just as tightly as traffic that transverses the hardware. And that all of your change-control processes are maintained. Sure, you're going to have to keep an eye out for hypervisor vulnerabilities and exploits. But if you have good layers of defenses in place, it won't be the end of the world. « The Road Ends Here, If You Can Get Through The Traffic Jam | Main | Rock Chalk Phogedaboudit » |
| Sign Up Now For InformationWeek News Alerts |