Rootkit Hunter
Brian Fahrlander
brian at fahrlander.net
Sat Dec 23 10:48:46 UTC 2006
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Martin Marcher wrote:
> afaik, unix rootkits aren't quite the same as windows viruses most of
> them are carefully handcrafted and targeted at being invisible and also
> keeping a backdoor open, not doing something that would kills your data.
Has anyone written a root kit as a 'hypervisor', to keep an eye on a
Linux box? A white-hat tool for overseeing the whole show, so such a
program can't be installed?
I understand that a 'root kit' is different from a 'hypervisor'
kinda exploit, but if a decent hypervisor is watching, and prevents one
from taking root, that'd be useful now, wouldn't it?
- --
------------------------------------------------------------------------
Brian Fahrländer Christian, Conservative, and Technomad
Evansville, IN http://Fahrlander.net/brian
ICQ: 5119262 AOL/Yahoo/GoogleTalk: WheelDweller
------------------------------------------------------------------------
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
iD8DBQFFjQmO6PLtRzZbdhYRAlJ+AJ4k8Z8CuA0xDSVqFVTNrhcgxkj+uQCdHWpY
OBr+EsRhOhrm+S5VvvE/q6Q=
=7mgL
-----END PGP SIGNATURE-----
More information about the ubuntu-users
mailing list