0 Mėgstami
0Krepšelis

Analysis of Automated Rootkit Detection Methodologies: ANALYSIS, COMPARISON, AND EVALUATION OF THE EFFECTIVENESS OF ROOTKIT DETECTION METHODOLOGIES

70,53 
70,53 
2025-07-31 70.5300 InStock
Nemokamas pristatymas į paštomatus per 16-20 darbo dienų užsakymams nuo 19,00 

Knygos aprašymas

The focus of this study was to identify, analyze, compare, and evaluate the effectiveness of rootkit detection methodologies. Specifically, two methodologies were studied in depth. The first is the heuristic of statically analyzing kernel module binaries, which attempts to determine whether or not a software module's behavior is malicious, prior to passing it to the operating system. The second methodology analyzed in this paper, the Strider Ghostbuster framework, compares what a computer system believes to be true (i.e., what modules are visible to the OS) to the absolute ¿truth,¿ which is determined via low-level system programming. The expected results of this comparison should always be equal, unless a malicious tampering on the system is observed. After comparing the effectiveness of detection methodologies on a set of well-known (and publicly available) rootkits, including a very simple rootkit built by the author, the methodologies are compared and their effectiveness is evaluated.

Informacija

Autorius: Eugene Chuvyrov
Leidėjas: LAP LAMBERT Academic Publishing
Išleidimo metai: 2011
Knygos puslapių skaičius: 116
ISBN-10: 3844384839
ISBN-13: 9783844384833
Formatas: Knyga minkštu viršeliu
Kalba: Anglų
Žanras: Operating systems

Pirkėjų atsiliepimai

Parašykite atsiliepimą apie „Analysis of Automated Rootkit Detection Methodologies: ANALYSIS, COMPARISON, AND EVALUATION OF THE EFFECTIVENESS OF ROOTKIT DETECTION METHODOLOGIES“

Būtina įvertinti prekę

Goodreads reviews for „Analysis of Automated Rootkit Detection Methodologies: ANALYSIS, COMPARISON, AND EVALUATION OF THE EFFECTIVENESS OF ROOTKIT DETECTION METHODOLOGIES“