Host Security Scan Triggering for Virtual Machine Protection
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Ensuring security for virtual machines deployed across diverse computing devices is challenging due to malware threats such as key-logging and screen-scraping, which can compromise username and password security and steal data.
Innovation Solution
A system that initiates a security scan on the host system before allowing virtual machine execution, restricting operations until the scan completes, and supports custom trigger points for scans during specific application events like authentication or data access, using either local or remote network services for scanning.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a security scan is performed on the host system before virtual machine execution, then security reliability is improved, but system operation time is increased
Solution Approach 1:
The patent performs security scans on the host system before allowing virtual machine execution. The scan is triggered as a preliminary action when the virtual machine attempts to start, checking for malware and security threats before the virtual machine operates. This ensures security is verified in advance, preventing compromised systems from running virtual machines while maintaining security reliability.
Solution Approach 2:
The patent implements dynamic security scanning by triggering scans based on virtual machine execution events rather than performing continuous or static scanning. The security scan is dynamically activated when needed (at VM startup) and restricted operations are dynamically applied during the scan process, then removed when scanning completes successfully. This dynamic approach balances security with operational efficiency.
2Reliability
If operations are restricted during security scan, then security reliability is improved, but ease of operation is worsened
Solution Approach 1:
The patent applies preliminary anti-action by restricting virtual machine operations before security threats can cause harm. When a security scan is triggered, the system proactively restricts operations that could be compromised (such as authentication, screen display, and data access) to prevent malware from intercepting credentials or scraping data. These restrictions are preventive measures applied in advance to counter potential security threats.
Solution Approach 2:
The patent dynamically manages operation restrictions by applying them only during the security scan period and automatically removing them when scanning completes successfully. The restrictions are not permanent but are temporarily applied based on the scan status. This dynamic approach ensures security during scanning while restoring full operational convenience once security is verified, minimizing the impact on user experience.
3Reliability
If custom trigger points are implemented for security scans, then security coverage is improved, but device complexity is increased
Solution Approach 1:
The patent segments the security scanning process into multiple trigger points based on specific virtual machine operations. Instead of a single monolithic scan, the system triggers scans at distinct events such as VM startup, authentication attempts, screen display operations, and data access operations. Each trigger point addresses specific security concerns associated with that operation, providing comprehensive security coverage through segmented scanning events.
Solution Approach 2:
The patent implements a universal security scan mechanism that can be triggered by multiple different events and applies to various virtual machine operations. The same security scanning infrastructure handles different trigger points (VM startup, authentication, screen display, data access), making the security system multi-functional and adaptable to different security scenarios without requiring separate scanning mechanisms for each operation.
Data Source
AI summary
The disclosed embodiments provide a system that protects an application from malware on a host system. During operation, the system receives a command to commence execution of the application on the host system. In response to the command, the system causes a security scan to be performed on the host system to detect malware, wherein the malware can compromise the security of the application. The system also restricts one or more operations associated with the application until the security scan successfully completes.


