About

This page contains a single entry from the blog posted on April 19, 2007 10:18 AM.

The previous post in this blog was Maturing market - botnets battle for marketshare.

The next post in this blog is Individually targeted phishing attacks.

Many more can be found on the main index page or by looking through the archives.

« Maturing market - botnets battle for marketshare | Main | Individually targeted phishing attacks »

Growing threat...rootkit sophistication

McAfee recently released a 16 page report "Rootkits Part 2: A Technical Primer". It is worth a read, especially for the last sections of the document "Payload techniques: proof of concept:.

There the authors Aditya Kapoor and Ahmed Sallam paint the picture of new forms of attacks, not yet documented in the wild, but ones they feel will become common in the future. This includes virtual memory subversion, SubVirt, Blue Pill, raw network manipulation, firmware and hardware manipulation and advanced configuration and power interface manipulation.

Bottom line: Expect lots more trouble, security breaches and costs of cleanup as these attacks become common.

Guy
www.authenticationworld.com
guy.huntington@authenticationworld.com

TrackBack

TrackBack URL for this entry:
http://www.authenticationworld.com/cgi-bin/blog/mt-tb.cgi/209

Post a comment

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)