[brlug-general] Does VM technology improve or hurt security?

Tim Fournet tfournet at penguinmonster.com
Thu Apr 15 00:01:06 CDT 2004


Dustin Puryear wrote

>Bad:
>
>An attacker could potentially break out of the VM and take over the entire
>server. This would allow him to compromise all of the virtual servers.
>Basically, using VM could mean putting all of your eggs in one basket.
>  
>
How? From what I've seen, the guest OS doesn't even know it's not on a 
real computer. The closest danger I could see would be if the guest OS 
gets compromised, the attacker could use the network transport to get to 
other machines, but that's no different than a physical box.




More information about the General mailing list