CHAPTER 3

USER-MODE ROOTKITS

Attackers always find ways to weaponize those technologies that are designed to do something to aid users and employ it to their advantage. Rootkit technology is one of those technologies that have been abused over and over again. It was abused so much that the term rootkit became synonymous with malware. But in the strictest sense and definition of the word, a rootkit is not malicious. It is a technology. A rootkit is a technology represented in code or as a set of tools that enables root-level or administrator-level access on a computer system. This technology, or the technology being utilized by the different kits that include this capability, became very popular with attackers because it gave them the keys to ...

Get Hacking Exposed Malware & Rootkits: Security Secrets and Solutions, Second Edition, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.