Marke: Alejandro Vázquez Vázquez
Variante: Taschenbuch
Eigenschaften:
UEFI bootkits and kernel-mode rootkits remain among the least documented areas of offensive security.This book provides a practical guide to how modern bootkits and rootkits operate, how they modify the boot process and the operating system kernel, and how they are designed and built from scratch.Inside, you will explore:UEFI internals and the boot processModern Windows and Linux bootkit developmentKernel-mode driver developmentRootkit techniquesSecure Boot bypass conceptsComplete bootkit development workflowRather than focusing only on malware found in the wild, this book connects the full path from UEFI firmware execution to kernel-mode compromise, explaining how individual techniques fit into a complete low-level development process.Whether you are a malware researcher, reverse engineer, red team operator, or low-level systems developer, this book provides a structured path into one of the most advanced areas of offensive security research.By following the material presented throughout this book and the accompanying projects, readers will learn how a complete UEFI bootkit can be developed to modify the operating system boot chain and deploy a kernel-mode rootkit.Capabilities once considered the exclusive domain of advanced threat actors and nation-state groups are now presented openly through this book. Written by the creators of Abyss and Antarctic, successors inspired by the techniques demonstrated by BlackLotus and Bootkitty, this work makes years of offensive UEFI security research publicly available to the world.