摘要
内核级Rootkit作为一种高效的攻击手段,在Windows以及Linux平台上被广泛采用。以Linux 2.6内核为基础的Android系列操作系统将面临内核级Rootkit攻击的风险。根据对Android电话系统的体系结构进行分析,以内核可加载模块(LKM)技术为基础,通过替换Android内核中虚拟文件系统(VFS)的相关系统调用,提出了一种Android平台上内核级Rootkit攻击方式。
As an efficient means of attack, Rootkit is widely used in Windows and Linux platforms. The Android system based on Linux 2.6 kernel faces risks various of this attack. Based on analysis of the Android telephone system architecture, a Rootkit attack working on Android OS is proposed, which is based on LKM(loadable kernel module) and replacement of the system call in VFS(virtual file system).
出处
《信息安全与通信保密》
2013年第1期68-69,74,共3页
Information Security and Communications Privacy