yeah, it makes us nervous too
Showing 1 - 1 of 1 RSS Feed

Files

sk-1.3a.tar.gz
Posted Jul 8, 2002
Authored by sd | Site sd.g-art.nl

The SucKIT is easy-to-use, Linux-i386 kernel-based rootkit. The code stays in memory through /dev/kmem trick, without help of LKM support nor System.map or such things. Everything is done on the fly. It can hide PIDs, files, tcp/udp/raw sockets, sniff TTYs. Next, it have integrated TTY shell access (xor+sha1) which can be invoked through any running service on a server. No compiling on target box needed, one binary can work on any of 2.2.x & 2.4.x kernels precompiled (libc-free).

tags | tool, shell, kernel, udp, tcp, rootkit
systems | linux, unix
MD5 | 5b947de74ce9ba53023569fe77cae75b
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close