Microsoft yakatanga basa rekuona rootkit yeLinux

Microsoft Company yakaunzwa itsva yemahara online sevhisi Freta, aimed kuona kuti Linux nharaunda mifananidzo inotariswa rootkits, zvakavanzika maitiro, malware, uye fungidziro chiitiko senge system call hijacking uye kushandiswa kweLD_PRELOAD kukanganisa mabasa eraibhurari. Iyo sevhisi inoda kurodha mufananidzo weiyo system kune yekunze Microsoft server uye ine chinangwa chekutarisa zviri mukati meiyo chaiyo nharaunda.

Kubuda kunoumbwa report, ichiratidza mamiriro ematafura ehurongwa, kernel modules, network yekubatanidza, debugging mabasa uye maitiro, ayo anogona kushandiswa panguva ye forensic kuongororwa kwemhedzisiro yekubira. Inotsigira kuongororwa kweanopfuura 4000 Linux kernel akasiyana. Zvinogoneka kurodha zvimedu zvemamiriro ekunze muVMRS (Hyper-V yekutarisa) uye CORE (VMware snapshot) mafomati, pamwe nekuraswa kwendangariro kweiyo inoshanda sisitimu yakagadzirwa uchishandisa maturusi. AVML ΠΈ LiME. Kodhi yebasa yakanyorwa neRust.

Microsoft yakatanga basa rekuona rootkit yeLinux

Source: opennet.ru

Voeg