Posted Mar 2, 2007 15:09 UTC (Fri) by aashenfe
In reply to: Signed Executables.
Parent article: Hunting for Rootkits
>Remember that you can't trust a root comprimised system to be honest about the checksums and signitures.
True, but I was hoping signed executables, and modules would help prevent a kernel level compromise in the first place. At least for the older rootkits that are unaware of the new security.
to post comments)