Slashdot Mirror


Sebek2 - A Kernel-based Data Capture Tool

LogError writes "Sebek is a piece of code the lives entirely in kernel space and records either some or all data accessed by users on the system. This paper is a detailed discussion of Sebek, how it works and its value."

1 of 74 comments (clear)

  1. NSA by Zardus · · Score: 0, Redundant

    All those people running SELinux might want to reconsider when the next release includes a kernel patched with this. To combat terrorism, of course!

    --
    You can mod your friends, you can mod your nose, but you can't mod your friend's nose.