Hypervisor-Based Active Data Protection for Integrity and Confidentiality of Dynamically Allocated Memory in Windows Kernel Paper • 1805.11847 • Published May 30, 2018
Divide et Impera: MemoryRanger Runs Drivers in Isolated Kernel Spaces Paper • 1812.09920 • Published Dec 24, 2018
MemoryRanger Prevents Hijacking FILE_OBJECT Structures in Windows Kernel Paper • 1905.09543 • Published May 23, 2019
Windows Kernel Hijacking Is Not an Option: MemoryRanger Comes to the Rescue Again Paper • 2106.06065 • Published Jun 10, 2021
Microsoft Defender Will Be Defended: MemoryRanger Prevents Blinding Windows AV Paper • 2210.02821 • Published Oct 6, 2022
ALPC Is In Danger: ALPChecker Detects Spoofing and Blinding Paper • 2401.01376 • Published Dec 30, 2023
Detect Kernel-Mode Rootkits via Real Time Logging & Controlling Memory Access Paper • 1705.06784 • Published May 18, 2017
Acceleration of Statistical Detection of Zero-day Malware in the Memory Dump Using CUDA-enabled GPU Hardware Paper • 1606.04662 • Published Jun 15, 2016
Two Challenges of Stealthy Hypervisors Detection: Time Cheating and Data Fluctuations Paper • 1506.04131 • Published Jun 12, 2015