Description: \item{SucKIT} Oct 13, 2005 (2.2.x & 2.4.x kernels)
http://packetstormsecurity.org/files/40690/suckit2priv.tar.gz
http://packetstormsecurity.org/files/26371/sk-1.3a.tar.gz
http://needleseek.msra.cn/result.aspx?query=SucKIT
1. SucKIT ( see[ SUKT01]) is an example of rootkit which uses /dev/kmem to access kernel and then changing system_call code, not touching original syscall table.
2. SucKIT is a root-kit presented in Phrack issue 58, article 0x07 (" Linux on-the-fly kernel patching without LKM", by sd & devik).
3. Some research reports that SucKIT is a widely-known ( published in Phrack) kernel-level-rootkit.
4. Some Holidays Just SuckIt was a well-known fact that you did not bother Hangover on one particular day of the year.
To Search:
File list (Check if you may need any files):
suckit2priv.tar