Rootkit Hunter

Brian Fahrlander brian at fahrlander.net
Sat Dec 23 10:48:46 UTC 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Martin Marcher wrote:

> afaik, unix rootkits aren't quite the same as windows viruses most of
> them are carefully handcrafted and targeted at being invisible and also
> keeping a backdoor open, not doing something that would kills your data.

   Has anyone written a root kit as a 'hypervisor', to keep an eye on a
Linux box?  A white-hat tool for overseeing the whole show, so such a
program can't be installed?

   I understand that a  'root kit' is different from a 'hypervisor'
kinda exploit, but if a decent hypervisor is watching, and prevents one
from taking root, that'd be useful now, wouldn't it?


- --
 ------------------------------------------------------------------------
 Brian Fahrländer                 Christian, Conservative, and Technomad
 Evansville, IN                              http://Fahrlander.net/brian
 ICQ: 5119262                         AOL/Yahoo/GoogleTalk: WheelDweller
 ------------------------------------------------------------------------
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFjQmO6PLtRzZbdhYRAlJ+AJ4k8Z8CuA0xDSVqFVTNrhcgxkj+uQCdHWpY
OBr+EsRhOhrm+S5VvvE/q6Q=
=7mgL
-----END PGP SIGNATURE-----




More information about the ubuntu-users mailing list