Using the vmcall instruction, we can show how guest processes can communicate with IntroVirt tools and add protections that make…
Tag: Linux
-

Virtual Machine Introspection is Dead
While the idea of virtual machine introspection (VMI) hasn’t truly vanished, its open-source ecosystem has stagnated. Most current tools such…
Tags: C++, Drakvuf, hvmi, IntroVirt, kernel modules, Kernel Patch, KVM, Linux, Linux Kernel, Quilt, Secure Boot, virtual machine introspection, vmi, Windows
About Me

Sean LaPlante
Software Engineer
Hello
Follow Me
Connect with me if you want.
