Re: Exploit or trojan

"Steve Bremer" <[email protected]> Fri, 19 Dec 2003 09:16:10 -0600
Newsgroups gmane.comp.security.sun
Organization NEBCO, Inc.
Message-ID <3FE2C1D9.3729.2D918AF@localhost>
> A little addition here: Some Linux backdoors (Suckit, for example)
> doesn't work as a kernel module. It just opens /dev/kmem and patch it
> on the fly. 

Using this method also requires more precision.  If it's not done 
properly, it can create stability problems as was the case when some 
of the Debian servers were compromised.

Steve Bremer
NEBCO, Inc.
System & Security Administrator