Cédric Walter | Oct 8, 2020 | 0
Virus, spywares, bugs what is missing? rootkit!
Microsoft security researchers are warning about a new generation of powerful system monitoring programs, or "rootkits," that are almost impossible to detect using current security products and that could pose a serious risk to corporations and individuals. More Here
Rootkit replace some part of the kernel or programs in order to do operations in the background or avoid being compromise…As usual, they’re a lot of malchance that windows get attack more often, since:
- You are running as admin user or
- M$ program isolation is a joke (sandboxing, user rights …).
Note: a tool to detect a lot of them under linux: chkrootkit, the version 0.44 is available under YaST Suse 9.2, to launch it simply type as root: #chkrootkit after installation…