6 ms·
I would get under the hood of metasploit and see where that takes you. Or read the old phracks. Even four years ago phrack was talking about inserting kernel mo
by j2d2 17y ago
I would get under the hood of metasploit and see where that takes you. Or read the old phracks. Even four years ago phrack was talking about inserting kernel modules without root perms. Neat stuff!
- streblo 17y agoI'm taking a course right now in operating systems, a big section of which is on security. All of our required readings for this section have come from metasploit/phrack/insecure.
- tptacek 17y agoPermit me to geek out for a moment and point out that this trick goes back more than 10 years: http://bit.ly/1kQu07 http://bit.ly/1kQu07 What's more, in 1996: * amodload worked under the (then) closed-sourced SunOS * it was written in SPARC assembly * it shimmed its own kernel module loader through devkmem It's basically the first real Unix virus. What's depressing is that almost everything it did was pedestrian for virus authors 5 years prior to it.
- j2d2 17y agoGreat link! Thanks!