-
公开(公告)号:US10776491B2
公开(公告)日:2020-09-15
申请号:US15938017
申请日:2018-03-28
Inventor: Sung-Jin Kim , Hyunyi Yi , Seong-Joong Kim , Woomin Hwang , Byung-Joon Kim , Chulwoo Lee , Hyoung-Chun Kim
Abstract: An apparatus and method for collecting an audit trail in a virtual machine boot process, the audit-trail-collecting apparatus including an event detection unit for detecting a software interrupt event, a register state information extraction unit for extracting state information of a CPU register corresponding to a detection time of the software interrupt event, a monitoring unit for monitoring a change in a vector value corresponding to the software interrupt event in an interrupt vector table, a threat occurrence detection unit for detecting a threat occurrence in a virtual machine boot process based on at least one of the CPU register state information and a monitored result, and an audit trail collection unit for storing an audit trail corresponding to at least one of the CPU register state information and the monitored result when the threat occurrence is detected in the virtual machine boot process.
-
公开(公告)号:US11893107B2
公开(公告)日:2024-02-06
申请号:US17489032
申请日:2021-09-29
Inventor: Seung-Hun Han , Seong-Joong Kim , Gak-Soo Lim , Byung-Joon Kim
CPC classification number: G06F21/53 , G06F9/45558 , G06F21/54 , G06F21/554 , G06F2009/45587
Abstract: Disclosed herein are an apparatus and method for preventing a security threat to a virtual machine. The apparatus includes one or more processors and executable memory for storing at least one program executed by the one or more processors. The at least one program is configured such that a hypervisor for virtualization in a host kernel executes a virtualization instruction corresponding to the service requested by a virtual machine of a host application and such that a hypervisor for monitoring interrupts the virtualization instruction in response to a security threat event occurring in the monitoring area of the hypervisor for virtualization and controls the process and thread of the host kernel. The hypervisor for monitoring is located in an area separate from the area in which the hypervisor for virtualization is located in the host kernel.
-
3.
公开(公告)号:US10802863B2
公开(公告)日:2020-10-13
申请号:US15975932
申请日:2018-05-10
Inventor: Hyunyi Yi , Sung-Jin Kim , Woomin Hwang , Seong-Joong Kim , Chulwoo Lee , Byung-Joon Kim , Hyoung-Chun Kim
Abstract: An apparatus and method for storing an audit trail in response to execution of a virtual-machine process. The method for storing an audit trail, performed by the apparatus for storing an audit trail in response to execution of a virtual-machine process, includes detecting execution of a process inside a virtual machine, determining whether the executed process is a monitoring target process and determining a type of the process, activating one or more monitoring events for monitoring at least one of an upload, a download and a drop by the process based on a result of the determination, and storing information about occurrence of the activated monitoring event as an audit trail.
-
公开(公告)号:US10771462B2
公开(公告)日:2020-09-08
申请号:US15980945
申请日:2018-05-16
Inventor: Seunghun Han , Hyun Ku Kim , Wook Shin , Byung-Joon Kim , Hyoung-Chun Kim
Abstract: A user terminal using cloud service, an integrated security management server for the user terminal, and an integrated security management method for the user terminal. The integrated security management method includes receiving, by an integrated security management server, authentication information from at least one user terminal that use a cloud service, authenticating, by the integrated security management server, the user terminal using the authentication information, transmitting, by the integrated security management server, task information to the user terminal so as to control the user terminal, receiving, by the integrated security management server, at least one of a result of processing the task information and state information from the user terminal that verifies the task information, and managing, by the integrated security management server, a state of the user terminal based on at least one of the result of processing and the state information.
-
公开(公告)号:US10318275B2
公开(公告)日:2019-06-11
申请号:US15656206
申请日:2017-07-21
Inventor: Sung-Jin Kim , Woomin Hwang , Byung-Joon Kim , Hyun-Yi Yi , Chul-Woo Lee , Hyoung-Chun Kim
IPC: G06F8/65 , G06F9/455 , G06F9/4401
Abstract: A software update apparatus and method in a virtualized environment. The software update method performed by a software update apparatus in a virtualized environment includes monitoring an operation that is invoked when software is updated in a guest operating system area, creating a software profile by analyzing results of the monitoring, mounting a virtual disk image for a target virtual machine in a target directory in a virtual machine monitor area, and incorporating update information of at least one of a file and a registry that are specified in the software profile into the target directory in which the virtual disk image is mounted.
-
公开(公告)号:US11991150B2
公开(公告)日:2024-05-21
申请号:US17467793
申请日:2021-09-07
Inventor: Gak-Soo Lim , Sung-Jin Kim , Jung-Hwan Kang , Seung-Hun Han , Byung-Joon Kim
IPC: H04L9/40
CPC classification number: H04L63/0272 , H04L63/20 , H04L63/0428
Abstract: Disclosed herein are an apparatus and method for providing a remote work environment. The apparatus includes one or more processors and executable memory for storing at least one program executed by the one or more processors. The at least one program performs Virtual Private Network (VPN) authentication in response to a request for remote access to a work network from a user terminal, performs user authentication in order to connect the user terminal that succeeds in VPN authentication to the work network, decrypts the encrypted user data area of the user terminal that is connected to the work network, and provides the remote work environment to the user terminal based on the user data area through the work network.
-
公开(公告)号:US11784978B2
公开(公告)日:2023-10-10
申请号:US17467812
申请日:2021-09-07
Inventor: Seung-Hun Han , Ju-Hyung Son , Tae-Ho Nam , Ara Jo , Gak-Soo Lim , Byung-Joon Kim
IPC: H04L9/40 , G06F8/61 , G06F9/4401
CPC classification number: H04L63/0272 , G06F8/63 , G06F9/4416 , H04L63/0428 , H04L63/0823 , H04L63/108
Abstract: Disclosed herein are a method for establishing a remote work environment for ensuring the security of a user terminal for remote work and an apparatus using the method. The method, performed by the apparatus, includes acquiring media image creation information from a user; creating a certificate for VPN access based on the media image creation information and creating a media image using the media image creation information and the certificate for VPN access; and providing the media image to the user such that the user is able to create a medium for remote work. The user terminal for remote work is booted through the medium for remote work, thereby configuring a runtime environment for remote work in which security is ensured.
-
公开(公告)号:US11204776B2
公开(公告)日:2021-12-21
申请号:US15069094
申请日:2016-03-14
Inventor: Sung-Jin Kim , Woomin Hwang , Byung-Joon Kim , Chul-Woo Lee , Hyoung-Chun Kim
IPC: G06F16/11 , G06F16/188 , G06F16/23 , G06F9/455 , G06F9/4401
Abstract: Disclosed herein are an apparatus and method for booting a virtual machine. The apparatus for booting a virtual machine includes: an access unit for accessing a virtual disk, corresponding to a virtual machine that exists in a virtualization area, using a trap generated by a trap generation unit, and for controlling the input and output of data stored in the virtual disk; an extraction unit for extracting data used for booting from the virtual disk; and a verification unit for extracting a trusted boot image from image storage and verifying the integrity of the data used for booting based on a result of comparing the trusted boot image with the data used for booting.
-
公开(公告)号:US10965679B2
公开(公告)日:2021-03-30
申请号:US15938003
申请日:2018-03-28
Inventor: Woomin Hwang , Hyunyi Yi , Sung-Jin Kim , Seong-Joong Kim , Chulwoo Lee , Byung-Joon Kim , Hyoung-Chun Kim
IPC: H04L29/06 , G06F9/455 , G06F16/13 , G06F16/172 , G06F16/182 , G06F16/17
Abstract: An apparatus for monitoring file access in a virtual machine in a cloud-computing system based on a virtualized environment includes a hypervisor for implementing at least one virtual machine and managing the virtual machine by monitoring a task in which a the virtual machine accesses a file loaded from storage to memory, the storage storing data including environment information of the virtual machine.
-
公开(公告)号:US10534653B2
公开(公告)日:2020-01-14
申请号:US15810790
申请日:2017-11-13
Inventor: Woomin Hwang , Sung-Jin Kim , Byung-Joon Kim , Hyunyi Yi , Chulwoo Lee , Hyoung-Chun Kim
Abstract: A hypervisor-based virtual machine isolation apparatus and method. The hypervisor-based virtual machine isolation method performed by the hypervisor-based virtual machine isolation apparatus includes when a hypervisor starts to run virtual machines, allocating one or more colors to each of the virtual machines, allocating a page frame corresponding to the allocated colors to the corresponding virtual machine, allocating an accessible core depending on the colors of the virtual machine, and performing isolation between virtual machines corresponding to an identical color by changing a temporal/spatial scheduling order between the virtual machines corresponding to the identical color.
-
-
-
-
-
-
-
-
-