Skip to content

Instantly share code, notes, and snippets.

@tthtlc
Created June 12, 2018 00:57
Show Gist options
  • Save tthtlc/0ce151914dd0a70c0aae4fe62e46166e to your computer and use it in GitHub Desktop.
Save tthtlc/0ce151914dd0a70c0aae4fe62e46166e to your computer and use it in GitHub Desktop.
Awesome checklist of rootkit techniques
https://talos-intelligence-site.s3.amazonaws.com/production/document_files/files/000/000/039/original/dimva16_graziano.pdf?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Credential=AKIAIXACIED2SPMSC7GA%2F20180612%2Fus-east-1%2Fs3%2Faws4_request&X-Amz-Date=20180612T004713Z&X-Amz-Expires=3600&X-Amz-SignedHeaders=host&X-Amz-Signature=5793b3c9302c7fff46d7ae9987eb0b2659d05bcaa40d1320d18e0cac276e327b
https://www.giac.org/paper/gsec/3768/windows-rootkits/106071
http://www.dmi.unipg.it/bista/didattica/sicurezza-pg/seminari2008-09/seminario_neri/seminario_neri.pdf
https://indigo.uic.edu/bitstream/handle/10027/9493/Bianchi_Antonio.pdf?sequence=1
http://www.co-c.net/repository-securite-informatique/Papers/SMM-Rootkits-Securecom08.pdf
https://arxiv.org/pdf/1506.04129.pdf
http://offbytwo.com/presentations/windows_nt_rootkits.pdf
http://dl.ifip.org/db/conf/ifip11-9/df2008/MolinaZREP08.pdf
https://www.blackhat.com/presentations/bh-usa-05/bh-us-05-sparks.pdf
https://www.symantec.com/avcenter/reference/when.malware.meets.rootkits.pdf
https://is.muni.cz/th/139801/fi_b/Bc.pdf
https://www.infopoint-security.de/open_downloads/alt/McAfee_wp_rootkits_part2_engl.pdf
https://pdfs.semanticscholar.org/e141/d9f29a1ff0f2cab8babcfb8245557e28b060.pdf
https://pdfs.semanticscholar.org/9a1a/913dbc2f8d3fbf5175e5fae7a8e4a304cb24.pdf
https://link.springer.com/content/pdf/10.1007/978-0-387-73742-3_6.pdf
http://www.dtic.mil/dtic/tr/fulltext/u2/a519999.pdf
http://www.cs.bilkent.edu.tr/tech-reports/2006/BU-CE-0604.pdf
https://www.sba-research.org/wp-content/uploads/publications/ccs12_blacksheep.pdf
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment