Kayaker
August 13th, 2006, 03:17
For those who keep up on the developments there's nothing new here, but this is a very nice summary of the current state of rootkits as well as their detection. The first paper was written in May 2006 so includes recent creations such as RAIDE and ShadowWalker. The second series of papers is equally good and should also be considered mandatory reading for those interested in rootkit technology. Happy reading!
Inside Windows Rootkits
Chris Ries
http://www.vigilantminds.com/files/inside_windows_rootkits.pdf
Windows rootkits of 2005, parts 1-3
James Butler, Sherri Sparks
http://www.securityfocus.com/infocus/1850
http://www.securityfocus.com/infocus/1851
http://www.securityfocus.com/infocus/1854
Kayaker
Inside Windows Rootkits
Chris Ries
http://www.vigilantminds.com/files/inside_windows_rootkits.pdf
Windows rootkits of 2005, parts 1-3
James Butler, Sherri Sparks
http://www.securityfocus.com/infocus/1850
http://www.securityfocus.com/infocus/1851
http://www.securityfocus.com/infocus/1854
Kayaker