AOH :: ISNQ7158.HTM
Network card rootkit offers extra stealth
|
Network card rootkit offers extra stealth
Network card rootkit offers extra stealth
This message is in MIME format. The first part should be readable text,
while the remaining parts are likely unreadable without MIME-aware tools.
--1457021584-1618983218-1290593289=:19520
Content-Type: TEXT/PLAIN; CHARSET=UTF-8
Content-Transfer-Encoding: QUOTED-PRINTABLE
Content-ID:
http://www.theregister.co.uk/2010/11/23/network_card_rootkit/
By John Leyden
The Register
23rd November 2010
Security researchers have demonstrated how it might be possible to place
backdoor rootkit software on a network card.
Guillaume Delugre, a reverse engineer at French security firm Sogeti
ESEC, was able to develop proof-of-concept code after studying the
firmware from Broadcom Ethernet NetExtreme PCI Ethernet cards.
He used publicly available documentations and open source tools to
develop a firmware debugger. He also reverse-engineered the format of
the EEPROM where firmware code is stored, as well as the bootstrap
process of the device.
Using the knowledge gained from this process, Delugr=C3=A9 was able to
develop custom firmware code and flash the device so that his
proof-of-concept code ran on the CPU of the network card. The technique
opens the possibility of planting a stealthy rootkit that lives within
the network card, an approach that gives potential miscreants several
advantages over conventional backdoors.
[...]
--1457021584-1618983218-1290593289=:19520
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
___________________________________________________________
Tegatai Managed Colocation: Four Provider Blended
Tier-1 Bandwidth, Fortinet Universal Threat Management,
Natural Disaster Avoidance, Always-On Power Delivery
Network, Cisco Switches, SAS 70 Type II Datacenter.
Find peace of mind, Defend your Critical Infrastructure.
http://www.tegataiphoenix.com/
--1457021584-1618983218-1290593289=:19520--
Site design & layout copyright © 1986- CodeGods