|
The enemy in the network card |
|
|
|
Source: H Security - Posted by Alex
|
Security expert Guillaume Delugré, who works for the Sogeti European Security Expertise Center (ESEC), has demonstrated that a rootkit doesn't necessarily have to infest a computer. The expert used freely available tools and documentation to develop custom firmware for Broadcom's NetExtreme network controller.
He was then able to conceal a rootkit within the firmware, making it untraceable by the virus scanners usually installed on a PC.
Delugré's code is executed by the network card's MIPS CPU and can directly communicate with working memory through the PCI interface's Direct Memory Access (DMA) – network cards normally use this functionality to exchange network frames with the driver installed on the computer.
Read this full article at H Security
Only registered users can write comments. Please login or register. Powered by AkoComment! |