Misplaced Pages

rkhunter

Article snapshot taken from Wikipedia with creative commons attribution-sharealike license. Give it a read and then ask your questions in the chat. We can research this topic together.
(Redirected from Rootkit Hunter)
This article relies excessively on references to primary sources. Please improve this article by adding secondary or tertiary sources.
Find sources: "Rkhunter" – news · newspapers · books · scholar · JSTOR (May 2023) (Learn how and when to remove this message)
rkhunter
rkhunter on Mac OS Xrkhunter on Mac OS X
Initial release2006; 19 years ago (2006)
Stable release1.4.6 / 20 February 2018; 6 years ago (2018-02-20)
Repository
Written inBourne shell, Perl
Operating systemUnix-like
Typerootkit detector
LicenseGNU General Public License
Websitesourceforge.net/projects/rkhunter/

rkhunter (Rootkit Hunter) is a Unix-based tool that scans for rootkits, backdoors and possible local exploits. It does this by comparing SHA-1 hashes of important files with known good ones in online databases, searching for default directories (of rootkits), wrong permissions, hidden files, suspicious strings in kernel modules, and special tests for Linux and FreeBSD. rkhunter is notable due to its inclusion in popular operating systems (Fedora, Debian, etc.)

The tool has been written in Bourne shell, to allow for portability. It can run on almost all UNIX-derived systems.

Development

In 2003, developer Michael Boelen released the version of Rootkit Hunter. After several years of development, early 2006, he agreed to hand over development to a development team. Since that time eight people have been working to set up the project properly and work towards the much-needed maintenance release. The project has since been moved to SourceForge.

See also

References

  1. "A way to detect the rootkits and exploits in CentOS/RHEL". medium.com. October 29, 2018. Retrieved 2024-07-04.
  2. "Fedora Packages Search". apps.fedoraproject.org.
  3. "Debian -- Details of package rkhunter in sid". packages.debian.org.

External links

Stub icon

This Unix-related article is a stub. You can help Misplaced Pages by expanding it.

Categories: