Open source release takes Linux rootkits mainstream (The Register)
[Posted September 5, 2008 by ris]
Open source release takes Linux rootkits mainstream (The Register)
[Press] Posted Sep 5, 2008 19:04 UTC (Fri) by ris
The Register covers
the release of an open-source rootkit. "When implemented,
Immunity's DR, or Debug Register, makes backdoors and other types of
malware extremely difficult to detect or eradicate. It's notable because it
cloaks itself by burrowing deep inside a server's processor and availing
itself of debugging mechanisms available in Intel's chip architecture. The
rootkit, in other words, mimics a kernel debugger."
Comments (3 posted)