LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Blogs
User Name
Password

Notices


Old

Zeppoo: another RK detector for GNU/Linux?

Posted 06-06-2006 at 12:02 PM by unSpawn

OK. So there's a new one on the block. Zeppoo. Dick blogs it as a "Memory level rootkit hunter" and Gadi calls it a "Decent Rootkit Detection for Linux" in his blog , though what's decent about it isn't explained. They also fail to seize the moment to emphasise prevention is better anyway.

Quote:
Originally Posted by Zeppoo
Anti-Rootkits which don’t use these methods can be fooled easily.
Like, duh?

And why doesn't anyone post up front why it's qualitatively soo much more advanced...
Moderator
Posted in Uncategorized
Views 1836 Comments 1 unSpawn is offline
Old

IIGC

Posted 04-05-2006 at 06:14 PM by unSpawn

Came up with a new FLA (Four Letter Acronym): IIGC, for "If I Googled Correctly".
Implying rudimentary coordination between searchengine-fu and knowledge-fu is present.
Moderator
Posted in Uncategorized
Views 1395 Comments 0 unSpawn is offline
Old

Rootcheck release 0.7

Posted 03-19-2006 at 02:58 PM by unSpawn

A new version (0.7) of rootcheck is or will be available RSN.
See http://www.ossec.net/rootcheck/
Moderator
Posted in Uncategorized
Views 1211 Comments 0 unSpawn is offline
Old

Rootkit Hunter 1.2.8

Posted 02-14-2006 at 09:20 AM by unSpawn

Rootkit Hunter just released 1.2.8: get it from http://www.rootkit.nl/
Moderator
Posted in Uncategorized
Views 1578 Comments 0 unSpawn is offline
Old

Constructing "ZoneAlarm for Linux"?

Posted 02-02-2006 at 07:13 PM by unSpawn

Once in a while a question like is there a "ZoneAlarm for Linux"? pops up in LQ-SEC. Usually members tend to tell OP's any firewall handling matters should be done using a front-end if Netfilter-fu is low, but basically that's it. IIRC that too LInux-centric a view: it is not all ZoneAlarm provides. As far as I can remember it checks if the binary has changed, looks up if it's allowed to use the network and if it is allowed to act as server and/or client.

//OK, first...
Moderator
Posted in Uncategorized
Views 10205 Comments 0 unSpawn is offline

  



All times are GMT -5. The time now is 10:32 PM.

Main Menu
Advertisement
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration