funsec mailing list archives

Virtual Machine Rootkits: The Next Big Threat?


From: "Fergie" <fergdawg () netzero net>
Date: Sat, 11 Mar 2006 00:55:58 GMT

Interesting article.

Via eWeek.

[snip]

Lab rats at Microsoft Research and the University of Michigan have teamed up to create prototypes for virtual 
machine-based rootkits that significantly push the envelope for hiding malware and that can maintain control of a 
target operating system.

The proof-of-concept rootkit, called SubVirt, exploits known security flaws and drops a VMM (virtual machine monitor) 
underneath a Windows or Linux installation.

[snip]

More:
http://www.eweek.com/article2/0,1759,1936666,00.asp

= ferg


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg () netzero net or fergdawg () sbcglobal net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: