YoVDO

Securing Linux VM Boot with AMD SEV Measurement

Offered By: Linux Foundation via YouTube

Tags

Conference Talks Courses Virtualization Courses System Security Courses Hashing Courses Attack Mitigations Courses Confidential Computing Courses AMD SEV Courses

Course Description

Overview

Explore the intricacies of securing Linux virtual machine boot processes using AMD Secure Encrypted Virtualization (SEV) measurement in this informative conference talk. Delve into the challenges faced in Confidential Computing settings and understand the vulnerabilities present in VM boot processes with -kernel. Learn about the innovative solution involving a Hashes GUIDed table and its implementation to mitigate host attacks. Discover the current status of this security measure, methods for accessing injected secrets, and gain insights into future plans for enhancing VM boot security. This presentation, delivered by experts from IBM Research, offers valuable knowledge for professionals working in virtualization, cloud computing, and cybersecurity.

Syllabus

Intro
Work of many people
Confidential Computing setting
The problem
AMD SEV
VM boot process with -kernel
Host attack on boot with -kernel
Vulnerability
Hashes GUIDed table
Solution details
Attack mitigation
Caveat
Implementation status
Accessing injected secrets
Future plans


Taught by

Linux Foundation

Tags

Related Courses

Data Structures: An Active Learning Approach
University of California, San Diego via edX
Blockchain Basics
University at Buffalo via Coursera
Intro to Data Structures and Algorithms
Google via Udacity
Introduction to Blockchain Technologies
INSEAD via Coursera
Data Structures
CEC via Swayam