Interesting links – May 28
Potentially interesting links for May 28:
- Khobe – Defeating antivirus via kernel driver hooks – Describes an attack exploiting kernel driver hooks in Microsoft Windows XP to intercept and alter communication between components and AV applications.
- Rubberhose cryptographically deniable disk encryption – Claims to be more secure, portable, uses steganography / deniable cryptography, works with any file system and has source freely available. Alpha quality. Linux only with NetBSD and FreeBSD support coming soon.
- The Enemy Within – Long, detailed novice-level history of conficker worm and the implications. Good awareness material for the uninformed.
Related posts:
Tags: antivirus, conficker, cryptography, disk, encryption, interesting, Malware, papers, Privacy, research, security+awareness, vulnerability, windows, worm