Всем Привет подскажите как найти руткит новичку
yo bro can you help please?Посмотреть вложение 106301
Attack surface has moved below the OS. On fully patched win11 your realistic entry points are secure boot chain, DMA/PCIe or a 2nd hypervisor layer: not plain driver signing dodges. Minimalist OSes (openBSD, nix/guix with rollback) show the cheapest rootkit mitigation: ship nothing, expose nothing. Worth studying so you know which lavish windows/macos features you can safely rip out in hardened builds.
thanksTry GMER http://www.gmer.net/ utility
Подскажу старую хорошую утилиту ,сейчас не знаю поддерживается она или нет,утилита gmer.Всем Привет подскажите как найти руткит новичку![]()
Is it possible to reuse ideas from EFIGuard?Посмотреть вложение 106301
Attack surface has moved below the OS. On fully patched win11 your realistic entry points are secure boot chain, DMA/PCIe or a 2nd hypervisor layer: not plain driver signing dodges. Minimalist OSes (openBSD, nix/guix with rollback) show the cheapest rootkit mitigation: ship nothing, expose nothing. Worth studying so you know which lavish windows/macos features you can safely rip out in hardened builds.
Why not? You'll need to bypass Secure Boot anyway. Let me remind you that this project is very well detected. One way or another, you're going to have to make your own solution.Is it possible to reuse ideas from EFIGuard?