Linked by Thom Holwerda on Tue 30th Jan 2007 21:28 UTC, submitted by PlatformAgnostic
Privacy, Security, Encryption Ken Johnson, a Windows kernel mode and debugging guru, analyzes the Windows x64 Kernel Patch prevention system on his blog. From his perspective, PatchGuard is neither a security scheme nor a DRM measure due to the limited scope of the structures it protects. Instead, it is a tool to prevent vendors from destroying system security and stability. Johnson also forecasts a hypervisor-based PatchGuard mechanism for future revisions to this technology. Check out other posts on Nynaeve for a wealth of technical details on Windows mechanisms of interest to reverse-engineers.
Thread beginning with comment 207570
To view parent comment, click here.
To read all comments associated with this story, please click here.
RE: Here's a story
by Gone fishing on Wed 31st Jan 2007 01:15 UTC in reply to "Here's a story"
Gone fishing
Member since:
2006-02-22

Agreed - some AV software is almost worse than a Virus – an OS should be able to protect itself from such crap.

Reply Parent Bookmark Score: 2