{"title":"阅览室。","authors":"M. Baretich","doi":"10.2345/0899-8205-50.1.76","DOIUrl":null,"url":null,"abstract":"Many systems administrators are not aware of the subtle differences between Mac OS X and its Unix operating system brethren (Jepson, Rothman, & Rosen, 2008). Hackers can exploit this ignorance when hiding their presence on compromised systems (Skoudis, 2007). In this paper, I apply the Covering the Tracks techniques described in the SANS SEC 504 course to Mac OS X. Doing so highlights the ways in which Mac OS X and Unix diverge, increasing awareness of how an attacker might conceal himself in Mac OS X. The go...","PeriodicalId":186799,"journal":{"name":"Biomedical instrumentation & technology / Association for the Advancement of Medical Instrumentation","volume":"101 6","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"1900-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"18","resultStr":"{\"title\":\"Reading Room.\",\"authors\":\"M. Baretich\",\"doi\":\"10.2345/0899-8205-50.1.76\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Many systems administrators are not aware of the subtle differences between Mac OS X and its Unix operating system brethren (Jepson, Rothman, & Rosen, 2008). Hackers can exploit this ignorance when hiding their presence on compromised systems (Skoudis, 2007). In this paper, I apply the Covering the Tracks techniques described in the SANS SEC 504 course to Mac OS X. Doing so highlights the ways in which Mac OS X and Unix diverge, increasing awareness of how an attacker might conceal himself in Mac OS X. The go...\",\"PeriodicalId\":186799,\"journal\":{\"name\":\"Biomedical instrumentation & technology / Association for the Advancement of Medical Instrumentation\",\"volume\":\"101 6\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"1900-01-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"18\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Biomedical instrumentation & technology / Association for the Advancement of Medical Instrumentation\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.2345/0899-8205-50.1.76\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Biomedical instrumentation & technology / Association for the Advancement of Medical Instrumentation","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.2345/0899-8205-50.1.76","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 18
摘要
许多系统管理员没有意识到Mac OS X和它的Unix操作系统兄弟之间的细微差别(杰普森,罗斯曼,&;罗森,2008)。黑客可以利用这种无知来隐藏他们在受损系统中的存在(Skoudis, 2007)。在本文中,我将SANS SEC 504课程中描述的覆盖轨迹技术应用于Mac OS X。这样做突出了Mac OS X和Unix的不同之处,提高了攻击者如何在Mac OS X中隐藏自己的意识。
Many systems administrators are not aware of the subtle differences between Mac OS X and its Unix operating system brethren (Jepson, Rothman, & Rosen, 2008). Hackers can exploit this ignorance when hiding their presence on compromised systems (Skoudis, 2007). In this paper, I apply the Covering the Tracks techniques described in the SANS SEC 504 course to Mac OS X. Doing so highlights the ways in which Mac OS X and Unix diverge, increasing awareness of how an attacker might conceal himself in Mac OS X. The go...