Zeppoo: Decent Rootkit Detection for Linux


Rootkit detection has been going on for a long time on Linux, far longer than on Windows.

Often it was just "signature based" such as with chkrootkit, finding already known rootkits. Windows rootkit detection tools only showed up in the last couple of years and are more generic in nature, looking at different hooks and signs of foul play. Still, they are far from mature and the technology for detection is still behind what the Bad Guys are using.

Zeppoo is a new tool for rootkit detection on Linux that works generically, catching up to the Windows technology. SecuriTeam Blogs Zeppoo: Decent Rootkit Detection for Linux

Linked by shanmuga Friday, 9th June 2006 9:56AM