How to block stealthy malware attacks
Washington, Nov 4: Researchers from North Carolina State University have devised a novel way to block rootkits, one of the most insidious types of malware, preventing them from taking over computer systems.
Malware or computer viruses is a growing problem that can lead to crashed computer systems and stolen personal information.
A recent Internet security threat report showed a 1,000 percent increase in the number of new malware signatures extracted from the in-the-wild malware programs found from 2006 to 2008.
Rootkits typically work by hijacking a number of "hooks," or control data, in a computer's operating system.
"Hackers can use rootkits to install and hide spyware or other programs. When you start your machine, everything seems normal but, unfortunately, you've been compromised," said Dr. Xuxian Jiang, assistant professor of computer science at NC State and a co-author of the research.
"By taking control of these hooks, the rootkit can intercept and manipulate the computer system's data at will essentially letting the user see only what it wants the user to see," Jiang added.
As a result, the rootkit can make itself invisible to the computer user and any antivirus software. Furthermore, the rootkit can install additional malware, such as programs designed to steal personal information, and make them invisible as well.
In order to prevent a rootkit from insinuating itself into an operating system, Jiang said that all of an operating system's hooks need to be protected.
"Our research leads to a new way that can protect all the hooks in an efficient way, by moving them to a centralized place and thus making them easier to manage and harder to subvert," said Jiang.
Jiang revealed that by placing all of the hooks in one place, researchers were able to simply leverage hardware-based memory protection, which is now commonplace, to prevent hooks from being hijacked.
They were able to put hardware in place to ensure that a rootkit cannot modify any hooks without approval from the user.
--ANI
Terrorists getting funds, equipment from Pak: Jammu Kashmir DGP
CEC 'ex-parte' recommendations contrary to SC, AP HC orders: OMC
India, US to sign Counter-Terrorism Initiative
The Netherlands Co to build 50,000 houses for flood-hit
World a better place without policing by the US and China: RSS
Southern Railway announces extension of special trains
Don't collect differential amount from poor students: CM
Insurance sector witnessing decline due to economic slowdown
Railway to seek grant from Centre for socially important projects
INS and Editors' Guild condemn attack on IBN-Lokmat's offices
Zak Trade Fairs and Exhibitions from Dec 3
Brethren Convention from Nov 30
YSR kin to get ticket for Assembly bypoll in Andhra Pradesh: Congress
National Mortality rate comes down to 72 per 1000 lives in India
Ensure balanced coverage of 26/11 anniv, Govt tells TV channels
Revoke life ban against Azharuddin, Congress MPs urge BCCI
Putin calls for modernisation of Russia's economy
US to give crucial information on Headley-Rana accomplice's 26/11 role to India
Kamat to inugurate annual 'India-The Big Picture' on Nov 24
Special package for disabled tourists in Himachal Pradesh hotels
Sushma Seth, Shehnaz Hussain honoured with Priyadarshini Awards
YSR's good work will ensure Cong facile win in civic polls: Andhra Pradesh CM
Swamy warns of stir against renaming Madurai airport
Cong, TDP candidates intend to make money post GHMC polls: JP
Precious metals zoom up during the week
State Govts equally responsible for price rise: Minister
China proves its supremecy in Asian TT C'ship
Two held for twin-murder in Kerala
China's intevention in Jammu Kashmir will be opposed : Rajnath
Centre to set up Biodiversity Research Centre: Ramesh
'Safety of journalists is our priority', says Ramesh Bagve
Karnataka CM meets Governor
India-China cooperation must for Asian stability: VP
NDA feels ashamed of showing real India : Rahul
Terrorism-States, Not Non-State Actors, Responsible: Prez
MDMK to work for AIADMK win in bypolls:Vaiko
India, Sri Lanka teams reach Kanpur for second Test
Pak government releases list of NRO beneficiaries
Mullaiperiyar Dam safe, seepage below permissible limits: Tamil Nadu tells Centre
Special counters to purchase discoloured paddy