02.03.2018 Views

Sybex CEH Certified Ethical Hacker Version 8 Study Guide

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

One of the prominent problems that has emerged with the<br />

spread of technology is malware. Malware is a term that covers<br />

viruses, worms, Trojans, and logic bombs as well as adware<br />

and spyware. These types of malware have caused a number of problems over the years,<br />

ranging from simple annoyances to dangerous and malicious exploits. Software that fits<br />

in the category of malware has evolved dramatically to now include the ability to steal<br />

passwords, personal information, and identities as well as damage hardware in some cases<br />

(as Stuxnet did).<br />

Malware is a new term, but the software types that it covers are far from new. Viruses<br />

and worms are some of the oldest forms of malicious software in existence. What has<br />

changed is the power of the technology, the creativity of the designers, and the effective<br />

distribution methods, such as more complex networks, file sharing, and other mechanisms<br />

that have come to the forefront over the years.<br />

This chapter also explores covert channels, the use of which has increased over the<br />

years. These channels are unknown, unmonitored pieces of a system that can be exploited<br />

to gain access to the system. Through the use of a covert channel, an attacker may be<br />

able to successfully gain access to a system without the owner’s knowledge, or delay<br />

detection so much that by the time the entry point is discovered, it is too late for the<br />

defender to do anything about it.<br />

This chapter covers the following topics:<br />

■<br />

■<br />

■<br />

■<br />

■<br />

■<br />

■<br />

Trojans<br />

Viruses<br />

Worms<br />

Using covert channels<br />

Creating covert channels<br />

Distributing malware<br />

Working with logic bombs<br />

Malware<br />

Malware is a term that is frequently used but frequently misapplied, so let’s first clarify<br />

its meaning. The term malware is short for malicious software, which accurately explains<br />

what this class of software is designed to do: to perform malicious and disruptive actions.<br />

Simply put, malware is any type of software that performs actions without the consent or<br />

knowledge of the system owner and results in a disruptive action or actions.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!