UMicrosoft uphehlelele inkonzo yokufumanisa i-rootkit yeLinux

Microsoft thaca inkonzo entsha yasimahla kwi-intanethi Freta, ijolise ukuqinisekisa ukuba imifanekiso yokusingqongileyo ye-Linux ijongiwe kwi-rootkits, iinkqubo ezifihliweyo, i-malware, kunye nomsebenzi okrokrisayo onje ngenkqubo yokuxhwilwa komnxeba kunye nokusetyenziswa kwe-LD_PRELOAD ukumosha imisebenzi yethala leencwadi. Inkonzo ifuna ukufaka umfanekiso okhawulezayo womfanekiso wenkqubo kwiseva yangaphandle yeMicrosoft kwaye ijolise ekujongeni imixholo yeemeko ezingqongileyo.

Imveliso yenziwe ingxelo, ebonisa imeko yeetheyibhile zenkqubo, iimodyuli ze-kernel, uxhulumaniso lwenethiwekhi, imisebenzi yokulungiswa kweempazamo kunye neenkqubo, ezinokuthi zisetyenziswe ngexesha lokuhlalutya kwe-forensic yemiphumo yokukhwabanisa. Ixhasa uhlalutyo lwe-4000 ye-Linux kernel ezahlukeneyo. Inokwenzeka ilayisha imifanekiso ekhawulezayo yeemeko ezingqongileyo kwiVMRS (indawo yokukhangela yeHyper-V) kunye neCORE (i-VMware snapshot) iifomati, kunye nokulahla inkumbulo yenkqubo yokusebenza eyenziwe kusetyenziswa izixhobo. AVML ΠΈ Lamoni. Ikhowudi yenkonzo ibhalwe kwiRust.

UMicrosoft uphehlelele inkonzo yokufumanisa i-rootkit yeLinux

umthombo: opennet.ru

Yongeza izimvo