ETD PDF

A Taxonomic Evaluation of Rootkit Deployment, Behavior and Detection

Citation

Major, Maxine. (2015). A Taxonomic Evaluation of Rootkit Deployment, Behavior and Detection. Theses and Dissertations Collection, University of Idaho Library Digital Collections. https://www.lib.uidaho.edu/digital/etd/items/major_idaho_0089n_10700.html

Title:
A Taxonomic Evaluation of Rootkit Deployment, Behavior and Detection
Author:
Major, Maxine
Date:
2015
Keywords:
advanced persistent threat APT cyber security malware rootkit taxonomy
Program:
Computer Science
Subject Category:
Computer science
Abstract:

Increased inter-connectivity between cyber and cyber-physical systems increases the danger of Advanced Persistent Threat (APT) cyber attacks, against which perimeter-focused defenses are no longer sufficient. Rootkits are debatably the most important piece of malicious software to the success of an APT. Rootkits are are often planted through social engineering, which intend to bypass perimeter-focused defenses. APTs, the most dangerous of cyber attacks, is facilitated by one of the least-detected attack methods.

In order to further the practice of detecting rootkits and aid with early detection, this thesis presents a taxonomy of rootkit activities through each stage of installation and exploitation. Correspondingly, this thesis presents a taxonomy of rootkit detection methods to address rootkit infection vectors. These taxonomies are then applied to a real-world rootkit example to demonstrate how combined application of rootkit detection tools and techniques can provide full-coverage of the possible rootkit-targeted attack surface.

Description:
masters, M.S., Computer Science -- University of Idaho - College of Graduate Studies, 2015
Major Professor:
Alves-Foss, Jim
Committee:
Conte de Leon, Daniel; Eftekharnejad, Sara
Defense Date:
2015
Identifier:
Major_idaho_0089N_10700
Type:
Text
Format Original:
PDF
Format:
application/pdf

Contact us about this record

Rights
Rights:
In Copyright - Educational Use Permitted. For more information, please contact University of Idaho Library Special Collections and Archives Department at libspec@uidaho.edu.
Standardized Rights:
http://rightsstatements.org/vocab/InC-EDU/1.0/