A Taxonomic Evaluation of Rootkit Deployment, Behavior and Detection
Major, Maxine. (2015). A Taxonomic Evaluation of Rootkit Deployment, Behavior and Detection. Theses and Dissertations Collection, University of Idaho Library Digital Collections. https://www.lib.uidaho.edu/digital/etd/items/major_idaho_0089n_10700.html
- Title:
- A Taxonomic Evaluation of Rootkit Deployment, Behavior and Detection
- Author:
- Major, Maxine
- Date:
- 2015
- Keywords:
- advanced persistent threat APT cyber security malware rootkit taxonomy
- Program:
- Computer Science
- Subject Category:
- Computer science
- Abstract:
-
Increased inter-connectivity between cyber and cyber-physical systems increases the danger of Advanced Persistent Threat (APT) cyber attacks, against which perimeter-focused defenses are no longer sufficient. Rootkits are debatably the most important piece of malicious software to the success of an APT. Rootkits are are often planted through social engineering, which intend to bypass perimeter-focused defenses. APTs, the most dangerous of cyber attacks, is facilitated by one of the least-detected attack methods.
In order to further the practice of detecting rootkits and aid with early detection, this thesis presents a taxonomy of rootkit activities through each stage of installation and exploitation. Correspondingly, this thesis presents a taxonomy of rootkit detection methods to address rootkit infection vectors. These taxonomies are then applied to a real-world rootkit example to demonstrate how combined application of rootkit detection tools and techniques can provide full-coverage of the possible rootkit-targeted attack surface.
- Description:
- masters, M.S., Computer Science -- University of Idaho - College of Graduate Studies, 2015
- Major Professor:
- Alves-Foss, Jim
- Committee:
- Conte de Leon, Daniel; Eftekharnejad, Sara
- Defense Date:
- 2015
- Identifier:
- Major_idaho_0089N_10700
- Type:
- Text
- Format Original:
- Format:
- application/pdf
- Rights:
- In Copyright - Educational Use Permitted. For more information, please contact University of Idaho Library Special Collections and Archives Department at libspec@uidaho.edu.
- Standardized Rights:
- http://rightsstatements.org/vocab/InC-EDU/1.0/