Softpedia
 


LINUX CATEGORIES:



GLOBAL PAGES >>
NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Linux Kernel 3.9.6 / 3....
  • Linux Kernel 3.0.82 LTS...
  • KDE Software Compilatio...
  • PulseAudio 4.0
  • Wireshark 1.10.0
  • NetworkManager 0.9.8.2
  • LibreOffice 3.6.6 / 4.0...
  • SystemRescueCd 3.7.0
  • Linux Kernel 3.10 RC6
  • Ubuntu Tweak 0.8.5
  • Home > Linux > Security

    Saint Jude 0.23

    Download button

    No screenshots available
    Downloads: 1,099  View global page NEW!  Tell us about an update
    User Rating:
    Rated by:
    Good (3.0/5)
    24 user(s)
    Developer:

    License / Price:

    Last Updated:

    Category:
    Rodrigo Rubira Branco and Tim Lawless | More programs
    BSD License / FREE
    July 31st, 2007, 21:42 GMT
    ROOT / Security

     Read user reviews (0)  Refer to a friend  Subscribe

    Saint Jude description

    Saint Jude software is a Project to develop Kernel-Level IDS mechinisms to protect the integrity of host systems.

    Saint Jude software is a Project to develop Kernel-Level IDS mechinisms to protect the integrity of host systems.

    This will permit the discovery of local and remote root exploits during the exploit itself. Once discovered, Saint Jude will terminate the execution, preventing the root exploit from occuring.

    This is done without checking for attack signatures of known exploits, and thus should work for both known and unknown exploits.

    Saint Jude exists in the Linux universe as a kernel module. The module should be loaded as soon as possible. The easiest way for thi s to be done is to cause init to load the module before going through the rc scripts, this permits StJude to monitor daemon processes that may be started through the rc scripts, as well as the behavior of the rc scripts themselves.

    The use of saint jude will involve compiling the module in two modes: learning mode, and normal mode. Learning mode generates a series of log entries via klogd that will be used to produce a ruleset appropriate for the host system. After the ruleset has been generated, it will replace the default ruleset shipped with StJude, and the module will be compiled in normal mode, where it will enforce the behavior that was modeled during the learning mode.

    We will cover how to do the various tasks involved in the following sections.

    Product's homepage

      


    TAGS:

    IDS mechinisms | system protection | exploits detection | Saint | Jude | IDS

    Go to top

    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM