Commit Graph

196 Commits

Author SHA1 Message Date
h3xduck
51c4391c97 Adjusted the size of two images more 2022-06-23 09:12:08 -04:00
h3xduck
caea1e7497 Revision of complete document + Abstract 2022-06-23 08:57:05 -04:00
h3xduck
d9192c06ab COmpleted document structure and code availability 2022-06-22 11:49:22 -04:00
jet
d019e6168a pass over ch 8 2022-06-22 16:16:47 +02:00
h3xduck
7e05e596d7 Completed conclusions and future work 2022-06-22 08:21:44 -04:00
jet
ded698411e new gantt chart fig 2022-06-22 13:08:52 +02:00
jet
4a372d1b3f pass over ch7 2022-06-22 13:05:29 +02:00
jet
1cd686e45b removing budget from here 2022-06-22 12:44:09 +02:00
jet
b41c168292 pass over 1.3
q
2022-06-22 12:39:16 +02:00
jet
8b7af85134 pass over 1.1 and 1.2 2022-06-22 12:00:37 +02:00
h3xduck
500314751b Completed budget, added gantt chart 2022-06-21 23:13:30 -04:00
h3xduck
ee63e1fc64 Completed environment and regulatory framework 2022-06-21 16:11:34 -04:00
jet
25bdcd361d pass over ch 6 2022-06-21 17:32:28 +02:00
h3xduck
42d4ce1d0b Completed chapter 6 2022-06-20 22:51:52 -04:00
h3xduck
dbdc1cbe9b Merge branch 'master' of https://github.com/h3xduck/TFG 2022-06-20 15:10:35 -04:00
h3xduck
a542bef3b4 Almost completed chapter 6 2022-06-20 15:10:33 -04:00
jet
ad1d8df547 minor edit 2022-06-20 12:02:25 +02:00
h3xduck
5d6619ce40 Finished section 5. Multiple changes in the code according to the performed tests. 2022-06-19 14:35:19 -04:00
h3xduck
bfcbfcfaf2 Added multiple small changes to client and code, submitting almost finished chapter 5 2022-06-18 10:57:10 -04:00
h3xduck
1b766096bf Corrected grammar and spelling mistakes in the whole document 2022-06-17 08:03:26 -04:00
h3xduck
2b719ff0a5 Completed chapter 4 2022-06-16 20:38:15 -04:00
h3xduck
7f4209299c Completed rootkit user space program 2022-06-16 06:35:30 -04:00
h3xduck
e4737b3272 Completed rootkit client and rootkit user program ring buffer 2022-06-15 22:54:20 -04:00
h3xduck
f98f65429b Forgot to modify one appearance of old name 2022-06-15 20:40:18 -04:00
h3xduck
80f334636a Changed the repository (and the rootkit!) name with TripleCross: https://dictionary.cambridge.org/dictionary/english/double-cross. This is 'triple' because it is a BPF program that betrays you at the userspace, at the kernel, and at the network. 2022-06-15 20:33:07 -04:00
h3xduck
75e92445e5 Modified terminal names in the client 2022-06-15 19:09:58 -04:00
h3xduck
bdda5c4269 Modified client options once again for screenshots 2022-06-15 18:42:31 -04:00
h3xduck
b284581712 Further changed some help in the client 2022-06-15 17:48:21 -04:00
h3xduck
081a23a44f Modified the help of the client, this is for making some screenshots 2022-06-15 17:47:00 -04:00
h3xduck
6f2ef04a92 Completed backdoor and c2 section 2022-06-15 15:40:08 -04:00
h3xduck
8f844c748b Completed command and control 2022-06-15 12:45:59 -04:00
h3xduck
f09d6a6989 Continued with c2, bit i didnt like the structure, so it needs to be reformatted 2022-06-14 20:31:57 -04:00
h3xduck
9951f3a3fd Completed execution hijacking, completed first subsection of backdoor 2022-06-14 15:44:21 -04:00
jet
f3a834785a minor change in ch2 2022-06-14 11:36:57 +02:00
jet
473b9af279 ch 3 title change 2022-06-14 11:34:58 +02:00
h3xduck
163f923c55 Continued with execve hijacking. 2022-06-13 22:16:34 -04:00
h3xduck
a1a41b02df Almost completed section about privilege escalation 2022-06-13 15:44:37 -04:00
h3xduck
99ad9c5548 New explanation for the injection technique (alternative scanning process) and added flow diagram with full process. 2022-06-13 10:57:32 -04:00
h3xduck
050684c4d7 Reformatted gitignore and removed some annoying files from cache 2022-06-12 22:50:22 -04:00
h3xduck
71b093141b Further advanced with the library injection, almost finished. Multiple enhancements 2022-06-12 22:34:50 -04:00
h3xduck
0aec74e024 New diagrams, completed rootkit architecture 2022-06-12 08:16:59 -04:00
h3xduck
c14b407644 Added new rootkit overall diagram for architecture section 2022-06-11 22:20:27 -04:00
h3xduck
d7a9b0e777 Updated injection module to ensure shellcode fits in code cave. Added simple reverse shell in injection lib 2022-06-11 18:38:48 -04:00
h3xduck
e697dc867d Updated some style aspects, updated positions of tables and figures, other changes. 2022-06-11 16:32:00 -04:00
h3xduck
e5bb65925d Updated document structure, reformatted multiple chapters, updated chapter and section intros. Separated hardening features into two. Other changes suggested at the meeting, 2022-06-11 13:07:10 -04:00
h3xduck
1595caa8d0 Continued with library injection attack 2022-06-09 22:57:25 -04:00
h3xduck
a46339e912 Finished ROP by jeff dileo 2022-06-08 08:59:32 -04:00
h3xduck
5d67eddfd7 Finished rop explanation 2022-06-07 15:38:42 -04:00
h3xduck
65107f08ae Finished buffer overflow subsection 2022-06-07 12:52:51 -04:00
h3xduck
fd927a7837 Started section about rootkit techniques 2022-06-06 21:53:55 -04:00