System Service Descriptor Table

from Wikipedia, the free encyclopedia

The System Service Descriptor Table, or SSDT for short, is an internal table in the Windows operating system .

SSDT hooking is often used in rootkits and antivirus programs .

It was already shown in 2010 that many security software based on SSDT hooking is susceptible to so-called race conditions .

Individual evidence

  1. Windows rootkits of 2005, part one . In: Symantec . 2005.
  2. a b Attack defeats 'most' antivirus software . In: ZD Net UK . 2010.