Analysis of Automated Rootkit Detection Methodologies: Analysis, Comparison, and Evaluation of the Effectiveness of Rootkit Detection Methodologies - Eugene Chuvyrov - 書籍 - LAP LAMBERT Academic Publishing - 9783844384833 - 2011年6月6日
カバー画像とタイトルが一致しない場合、正しいのはタイトルです

Analysis of Automated Rootkit Detection Methodologies: Analysis, Comparison, and Evaluation of the Effectiveness of Rootkit Detection Methodologies

価格
¥ 7.326
税抜

遠隔倉庫からの取り寄せ

発送予定日 年10月15日 - 年10月27日
Eugene Chuvyrov の新しいリリースのお知らせを受け取る
iMusicのウィッシュリストに追加

まだ評価がありません

The focus of this study was to identify, analyze, compare, and evaluate the effectiveness of rootkit detection methodologies. Specifically, two methodologies were studied in depth. The first is the heuristic of statically analyzing kernel module binaries, which attempts to determine whether or not a software module's behavior is malicious, prior to passing it to the operating system. The second methodology analyzed in this paper, the Strider Ghostbuster framework, compares what a computer system believes to be true (i.e., what modules are visible to the OS) to the absolute ?truth,? which is determined via low-level system programming. The expected results of this comparison should always be equal, unless a malicious tampering on the system is observed. After comparing the effectiveness of detection methodologies on a set of well-known (and publicly available) rootkits, including a very simple rootkit built by the author, the methodologies are compared and their effectiveness is evaluated.

メディア 書籍     Paperback Book   (ソフトカバーで背表紙を接着した本)
リリース済み 2011年6月6日
ISBN13 9783844384833
出版社 LAP LAMBERT Academic Publishing
ページ数 116
寸法 150 × 7 × 225 mm   ·   191 g
言語 ドイツ語