, SecurityFocus 2003-11-06
Software developers on Wednesday detected and thwarted a hacker's scheme to submerge a slick backdoor in the next version of the Linux kernel, but security experts say the abortive caper proves that extremely subtle source code tampering is more than just the stuff of paranoid speculation.
Expand all |
Post comment
Thwarted Linux backdoor hints at smarter hacks
2003-11-09
Anonymous (4 replies)
Anonymous (4 replies)
Thwarted Linux backdoor hints at smarter hacks
2003-11-11
Cid Skid the Former Script K1d (3 replies)
Cid Skid the Former Script K1d (3 replies)

Because it's a classical mistake, it wouldn't have survived long in the source code anyhow. Lint or any similar code-checker would flag it. Anyone with much C experience who really read through the code should also notice it, although somehow the way this statement is written helps keep the suspicious single = from jumping right out of the page at you. (I can only assume that the guy who noticed the unauthorized change to the source was too focused on the issue of unauthorized changes to really read the change.)
[ reply ]
Link to this comment: http://www.securityfocus.com/comments/articles/7388/23747#23747