Abstract
Rootkit is a set of programs that allows a permanent or consistent, undetectable presence on network systems. Rootkit can cause serious network security threat since it provides stealth access and software eavesdropping for attackers by modifying the operating system kernel data or changing instruction execution path. Firstly, the basic definition and evolution of Windows Rootkit are introduced, and the Rootkit mechanism and the Windows system kernel components are then analyzed. Thereafter, we discuss Rootkit defense mechanism and detection methods. We conclude with prediction of the trends and further research directions of Rootkit and its defense.
Author supplied keywords
Cite
CITATION STYLE
Zhang, Y., Liu, Q. Z., Li, T., Luo, Z. Q., & Wu, L. H. (2015, July 30). Research and development of rootkit. Dianzi Keji Daxue Xuebao/Journal of the University of Electronic Science and Technology of China. Univ. of Electronic Science and Technology of China. https://doi.org/10.3969/j.issn.1001-0548.2015.04.016
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.