Malware Analysis - PoisonX rootkit, Kernel driver rootkit markup in Ghidra
MalwareAnalysisForHedgehogs
The video provides a detailed walkthrough of analyzing the PoisonX rootkit kernel driver using Ghidra to reverse engineer its malicious functionality. The presenter begins by explaining that while many drivers use obfuscation techniques like packing or encryption, this specific sample has a relative …