title WebLog #535 Topic: 2007-05-17 22.44.55 matt: book review: Professional Rootkits user matt ip 65.57.245.11 vol 1 My professional acquaintance, Ric Veiler, has written the best book on writing Rootkits I have read. /more I worked with Ric Veiler briefly, and then he and I worked in the same small office space afterward. He's a great programmer who can both write great modular code in a variety of languages and environments as well as untie knots of shitty code that are dropped in his lap. He is undervalued, in my opinion, but I'm sure that will change once people read his new book, /link http://www.amazon.com/gp/product/0470101547/105-3587705-6853241?ie=UTF8&tag=matthargettbl-20&linkCode=xm2&camp=1789&creativeASIN=0470101547 Professional Rootkits . Ric takes a conversational tone, making for easy reading. The code in the book is very well-written, not just throwaway crap code like in other books. I really like his real-world example of sniffing someone's PGP passphrase, keeping the book real, focused, and practical. There are other books in this space by bigger names, but this is the one I recommend to people who want to get started developing in this space, developing good programming habits, and have moved beyond reading the source code for /link http://sysinternals.com FileMon . /discussion