Detecting and Categorizing Kernel-Level Rootkits to Aid Future Detection

  • Authors:
  • John G. Levine;Julian B. Grizzard;Henry L. Owen

  • Affiliations:
  • Georgia Institute of Technology;Georgia Institute of Technology;Georgia Institute of Technology

  • Venue:
  • IEEE Security and Privacy
  • Year:
  • 2006

Quantified Score

Hi-index 0.03

Visualization

Abstract

Existing techniques to detect kernel-level rootkits expose some infections, but they don't identify specific attacks. This rootkit categorization approach helps system administrators identify the extent of specific infections, aiding in optimal recovery and faster reactions to future attacks.