Reading Phrack 61

Phrack 61 has appeared. Continuing the reading discipline.

This issue's most useful articles for me:

A piece on Slammer-style single-packet worms. The author analyses what made Slammer work and proposes architectural variants. The defensive implication: bandwidth-saturating UDP worms are a category, not a one-off.

An article on advanced kernel rootkit techniques. Continuing the trajectory. The techniques get harder to detect; the off-host observation argument I have been making continues to strengthen.

More as the year develops.


Back to all writing