Join BookitisSave favorites, build lists, and follow creators.

Rootkit arsenal

Work detail

Bookitis Pick
Cover for Rootkit arsenal
RA
Image source: Open Library
Bill Blunden1 editions

While forensic analysis has proven to be a valuable investigative tool in the field of computer security, utilizing anti-forensic technology makes it possible to maintain a covert operational foothold for extended periods, even in a high-security environment. Adopting an approach that favors full disclosure, the updated Second Edition of The Rootkit Arsenal presents the most accessible, timely, and complete coverage of forensic countermeasures. This book covers more topics, in greater depth, than any other currently available. In doing so the author forges through the murky back alleys of the Internet, shedding light on material that has traditionally been poorly documented, partially documented, or intentionally undocumented. The range of topics presented includes how to: Evade post-mortem analysis; Frustrate attempts to reverse engineer your command & control modules; Defeat live incident response; Undermine the process of memory analysis; Modify subsystem internals to feed misinformation to the outside; Entrench your code in fortified regions of execution; Design and implement covert channels; Unearth new avenues of attack. - Publisher.

Overview

Shared work-level identity and catalog context.

1 credited authorSearch language english

Bookitis keeps work pages focused on the shared book identity and the editions that actually belong to it. Unrelated books should not appear here as primary content.

Contributors

People credited with this work in the active catalog.

  • Bill Blunden

    Author profile in the active Bookitis catalog

    Open Author

Editions

Publication-specific versions linked to this work only.