Network


Latest external collaboration on country level. Dive into details by clicking on the dots.

Hotspot


Dive into the research topics where Andrew Patrick Norman is active.

Publication


Featured researches published by Andrew Patrick Norman.


enterprise distributed object computing | 2012

A Framework for Detecting Malware in Cloud by Identifying Symptoms

Keith Alexander Harrison; Behzad Bordbar; Syed T. T. Ali; Chris I. Dalton; Andrew Patrick Norman

Security is seen as one of the major challenges of the Cloud computing. Recent malware are not only becoming more sophisticated, but have also demonstrated a trend to make use of components, which can easily be distributed through the Internet to develop newer and better malware. As a result, the key problem facing Cloud security is to cope with identifying diverse sets of malware. This paper presents a method of detecting malware by identifying the symptoms of malicious behaviour as opposed to looking for the malware itself. This can be compared to the use of symptoms in human pathology, in which study of symptoms direct physicians to diagnosis of a disease or possible causes of illnesses. The main advantage of shifting the attention to the symptoms is that a wide range of malicious behaviour can result in the same set of symptoms. We propose the creation of Forensic Virtual Machines (FVM), which are mini Virtual Machines (VM) that can monitor other VMs to discover the symptoms. In this paper, we shall present a framework to support the FVMs so that they collaborate with each other in identifying symptoms by exchanging messages via secure channels. The FVMs report to a Command & Control module that collects and correlates the information so that suitable remedial actions can take place in real-time. The Command & Control can be compared to the physician who infers possibility of an illness from the occurring symptoms. In addition, as FVMs make use of the computational resources of the system we will present an algorithm for sharing of the FVMs so that they can be guided to search for the symptoms in the VMs with higher priority.


Archive | 2002

Multiple trusted computing environments

Jonathan Griffin; Christopher I. Dalton; Michael Child; Liqun Chen; Andrew Patrick Norman


Archive | 2003

Signal level propagation mechanism for distribution of a payload to vulnerable systems

John Melvin Brawn; Andrew Patrick Norman; Chris Ralph Dalton; Jonathan Griffin


Archive | 2003

Propagation of viruses through an information technology network

Jonathan Griffin; Andrew Patrick Norman; Matthew Murray Williamson; Aled Edwards


Archive | 2001

System and method for management of compartments in a trusted operating system

Joubert Berger; Scott Alan Leerssen; Tse Huong Choo; Richard B. Stock; Christopher I. Dalton; Andrew Patrick Norman


Archive | 2002

Method of hindering the propagation of a computer virus

Andrew Patrick Norman


Archive | 2002

Method of identifying software vulnerabilities on a computer system

Andrew Patrick Norman; John Melvin Brawn; John P Scrimsher; Jonathan Griffin


Archive | 2002

Trusted gateway system

Tse Huong Choo; Christopher I. Dalton; Andrew Patrick Norman


Archive | 2003

Long-term digital storage

Marco Casassa Mont; Andrew Patrick Norman; Simon Shiu; Adrian Baldwin; Keith Alexander Harrison


Archive | 2004

Administration of computing entities in a network

Matthew Murray Williamson; Andrew Patrick Norman; Jonathan Griffin

Collaboration


Dive into the Andrew Patrick Norman's collaboration.

Top Co-Authors

Avatar
Top Co-Authors

Avatar
Top Co-Authors

Avatar
Top Co-Authors

Avatar
Top Co-Authors

Avatar
Top Co-Authors

Avatar
Top Co-Authors

Avatar
Top Co-Authors

Avatar
Researchain Logo
Decentralizing Knowledge