LWN.net Logo

Hunting for Rootkits

Hunting for Rootkits

Posted Mar 1, 2007 12:30 UTC (Thu) by MathFox (guest, #6104)
In reply to: Hunting for Rootkits by NAR
Parent article: Hunting for Rootkits

One could create two similar files that hashed to the same digest value. It is possible to hide them in binaries (executables and libraries); they stand out in text files.
Getting one of those patters into a Linux system requires a compromise of the distribution site; but when you do that it's far easier to upload a simple trojan horse.


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds