Scholay

学术搜索 · AI 审稿 · LaTeX 协作

An Overview of Bootkit Attacking Approaches

作者:Xiang Li, Yan Wen, Min Huan Huang, Qiang Liu · 年份:2011 · DOI:10.1109/msn.2011.19 · 被引用次数:16 · 研究领域:Advanced Malware Detection Techniques、Security and Verification in Computing、Digital and Cyber Forensics

Boot kit, as an innovative root kit technology, transfer its storage location from the file system to the hardware store, and activates itself while or even before the operating system kernel is loaded. Therefore, boot kit can tamper the operating system and control the whole computer system. Compared to classic malware, it achieves a more powerful capability of hiding and controlling. This paper takes an overview of existing various boot kit technologies and summarizes their technical characteristics. This opens a door to the malware defenders for preventing the computer systems from boot kit.