From owner-freebsd-security@FreeBSD.ORG Fri Nov 3 15:55:02 2006 Return-Path: X-Original-To: freebsd-security@freebsd.org Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 9EF3416A40F for ; Fri, 3 Nov 2006 15:55:02 +0000 (UTC) (envelope-from ricardo_bsd@yahoo.com.br) Received: from web56404.mail.re3.yahoo.com (web56404.mail.re3.yahoo.com [216.252.111.83]) by mx1.FreeBSD.org (Postfix) with SMTP id 1C11B43D45 for ; Fri, 3 Nov 2006 15:54:59 +0000 (GMT) (envelope-from ricardo_bsd@yahoo.com.br) Received: (qmail 97183 invoked by uid 60001); 3 Nov 2006 15:54:59 -0000 DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=yahoo.com.br; h=Message-ID:Received:Date:From:Subject:To:MIME-Version:Content-Type; b=xD0X9kaqK07T2c7TDS19Mzt35XsS/AJ7qSXwAcZeLZhtx3xViYnuKg7scLqzfSbwn1u9g70/RPeacUhcdhq29oEiGH1dSJQehJoyYoq6V/yWK9CeSOvlwdVPqYk96ho08LEHIkaqk/7I3TG/BNoTXMFFIKdg1xl37FShElHrS/U= ; Message-ID: <20061103155459.97181.qmail@web56404.mail.re3.yahoo.com> Received: from [200.232.193.150] by web56404.mail.re3.yahoo.com via HTTP; Fri, 03 Nov 2006 07:54:59 PST Date: Fri, 3 Nov 2006 07:54:59 -0800 (PST) From: "Ricardo A. Reis" To: freebsd-security@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=iso-8859-1 Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Subject: Enc: FreeBSD and the new virtual machine-based rootkits X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 03 Nov 2006 15:55:02 -0000 =0A=0A----- Mensagem encaminhada ----=0ADe: Ricardo A. Reis =0APara: security@freebsd.org=0AEnviadas: Sexta-feira, 3 de Nove= mbro de 2006 10:54:14=0AAssunto: FreeBSD and the new virtual machine-based = rootkits=0A=0AHi All,=0A=0A =0A=0ARecently i participated in Brazil on Octo= ber 2006 The FIRST/TRANSITS and=0AII Latin American Incident Response Confe= rence (COLARIS).=0A=0A=0AIn the II COLARIS - Joanna Rutkowska alert the po= ssible =0Anew technology of Malware's using hardware virtualization, presen= t=0A=0Ain AMD and INTEL new processor.=0A=0A =0A=0AI've two questions ...= =0A=0A =0A=0A1) How is possible detect if my system is moved inside a VM on= the fly ?=0A2) Exist a project for merge veriexec from NetBSD on FreeBSD = =0A and add SPKI feature ?=0A=0A =0A=0Ahttp://www.eweek.com/article2/0,= 1895,2040760,00.asp=0A=0Ahttp://www.invisiblething.org=0A=0A =0A=0A-=0A=0AR= icardo A. Reis=0A=0AUNIFESP=0A=0AUnix and Network Admin =0A=0A =0A=0A = =0A=0A=0A=0A=09=09 =0AVoc=EA quer respostas para suas perguntas? Ou voc=EA = sabe muito e quer compartilhar seu conhecimento? Experimente o Yahoo! Respo= stas!=0A=0A=0A=0A=0A=0A=09=0A=0A=0A=09=0A=09=09=0A_________________________= ______________________________ =0AVoc=EA quer respostas para suas perguntas= ? Ou voc=EA sabe muito e quer compartilhar seu conhecimento? Experimente o = Yahoo! Respostas !=0Ahttp://br.answers.yahoo.com/