Can Internet attackers target a particular virtual machine on a large public cloud platform?

October 16th, 2009 by JP Gagne

“Using the Amazon EC2 service as a case study, we show that it is possible to map the internal cloud infrastructure, identify where a particular target VM is likely to reside, and then instantiate new VMs until one is placed co-resident with the target. We explore how such placement can then be used to mount cross-VM side-channel attacks to extract information from a target VM on the same machine.”

http://www.datacenterknowledge.com/archives/2009/08/31/cloud-cartography-and-security/

Leave a Reply