节点文献

检测Linux下的VFS型内核后门软件

Detecting VFS Kernel Backdoor Software in Linux

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 庄泗华王剑张福新

【Author】 ZHUANG Si hua 1,2 ,WANG Jian 1,ZHANG Fu xin 1,2 (1.Institute of Computing Technology, Chinese Academy of Sciences, Beijing 100080, China;2.School of Graduate, Chinese Academy of Sciences , Beijing 100039, China)

【机构】 中国科学院计算技术研究所中国科学院计算技术研究所 北京100080中国科学院研究生院北京100039北京100080北京100080中国科学院研究生院北京100039

【摘要】 近年来在Linux操作系统中出现了入侵Linux内核VFS(虚拟文件系统)驱动程序的后门技术。使用该技术的后门软件能逃脱所有现有的后门检测技术,给Linux系统的安全带来了极大危害。通过分析该后门技术和Linux内核,设计实现了对该类后门软件的检测技术,其效果好于现有的后门检测软件。

【Abstract】 A new backdoor technology which intrudes VFS (Virtual Filesystem Switch) driver of Linux kernel was introduced two years ago. With it, backdoor software can escape from being detected by existing technology and impair the security of Linux system greatly. Analyzed this technology and Linux kernel, designed and implemented a detecting technology for this kind of backdoor software. The detecting technology is better than existing backdoor detecting software.

【关键词】 Linux内核信息安全后门软件VFS
【Key words】 Linux KernelInformation SecurityBackdoor SoftwareVFS
  • 【文献出处】 计算机应用研究 ,Application Research of Computers , 编辑部邮箱 ,2005年05期
  • 【分类号】TP316.8
  • 【被引频次】6
  • 【下载频次】162
节点文献中: 

本文链接的文献网络图示:

本文的引文网络