activity
20152021
most citedDivide et Impera: MemoryRanger Runs Drivers in Isolated Kernel Spaces

6 citations · 8 across the 5 of their papers we have counts for

collaborators

8 papers

cs.CR2021

Windows Kernel Hijacking Is Not an Option: MemoryRanger Comes to the Rescue Again

Igor Korkin

The security of a computer system depends on OS kernel protection. It is crucial to reveal and inspect new attacks on kernel data, as these are used by hackers. The purpose of this…

cs.CR20192 cited

MemoryRanger Prevents Hijacking FILE_OBJECT Structures in Windows Kernel

Igor Korkin

Windows OS kernel memory is one of the main targets of cyber-attacks. By launching such attacks, hackers are succeeding in process privilege escalation and tampering with users dat…

cs.CR20186 cited

Divide et Impera: MemoryRanger Runs Drivers in Isolated Kernel Spaces

Igor Korkin

One of the main issues in the OS security is to provide trusted code execution in an untrusted environment. During executing, kernel-mode drivers allocate and process memory data:…

cs.CR2018

Hypervisor-Based Active Data Protection for Integrity and Confidentiality of Dynamically Allocated Memory in Windows Kernel

Igor Korkin

One of the main issues in the OS security is providing trusted code execution in an untrusted environment. During executing, kernel-mode drivers dynamically allocate memory to stor…

cs.CR2017

Detect Kernel-Mode Rootkits via Real Time Logging & Controlling Memory Access

Igor Korkin, Satoshi Tanda

Modern malware and spyware platforms attack existing antivirus solutions and even Microsoft PatchGuard. To protect users and business systems new technologies developed by Intel an…

cs.CR2016

Acceleration of Statistical Detection of Zero-day Malware in the Memory Dump Using CUDA-enabled GPU Hardware

Igor Korkin, Iwan Nesterow

This paper focuses on the anticipatory enhancement of methods of detecting stealth software. Cyber security detection tools are insufficiently powerful to reveal the most recent cy…