On Mon, Sep 09, 2002 at 09:32:19AM +0200, Paolo Perego wrote: > I was thinking about /dev/kmem permission and kernel patching > on the fly. The point is that an attacker could replace our beatiful and > warm kernel with an "a doc" evil-cracker-image playing with /dev/kmem, > of course after gaining root privileges. Our friend Devik wrote a phrack article about this a while back: http://www.phrack.com/show.php?p=58&a=7 -- http://immunix.org/
Attachment:
pgp00160.pgp
Description: PGP signature