【24h】

Detection of Loadable Kernel Module Rootkit

机译:检测可加载的内核模块rootkit

获取原文

摘要

Today a lot of vulnerabilities of computer systems and networks are discovered and published by the hackers, attackers, and intruders, which makes it easier for them to develop new hacking techniques. In this paper, we look into the backdoor technique called Loadable Kernel Module (LKM) used in the wild. We find that LKM backdoor is more sophisticated and powerful, while less detectable than traditional backdoors. By understanding more of Rootkit and figuring out what capabilities it has, we can obtain better means of countermeasures against it.
机译:今天,黑客,攻击者和入侵者发现并发布了很多计算机系统和网络的漏洞,这使得它们更容易开发新的黑客技术。在本文中,我们研究了野外使用的可加载核模块(LKM)的后门技术。我们发现LKM后门更复杂,强大,而不是传统的后门可检测到。通过了解更多rootkit并找出它的能力,我们可以获得更好的对策方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号