Chkrootkit: Eating APTs for breakfast since 1997 - Nelson Murilo at 44CON 2017
Description:
Explore a conference talk from 44CON 2017 that delves into Chkrootkit, a powerful open-source tool for detecting rootkits, malware, and advanced persistent threats (APTs) on Unix systems. Learn about the tool's 20-year history, its ability to run in virtually any Unix environment without dependencies, and its capacity to detect over 70 known rootkits, worms, and malicious activities. Discover the features and methods used for rootkit and malware detection, as well as the tool's limitations and potential improvements. Gain insights into post-mortem forensic analysis techniques for identifying kernel module activities and indicators of compromise. Presented by Nelson Murilo, one of Chkrootkit's original creators, this 35-minute talk offers valuable information for cybersecurity professionals and enthusiasts interested in enhancing their system security and threat detection capabilities.