...registrars have been pro-actively blocking. "It's not like it's gone," said Kaminsky, who worked with TheHoneynet Project on a way to detect infected computers using a flaw in Conficker's code. "We're looking at a massive...
http://news.cnet.com/8301-1009_3-10210934-83.html
...sniffer," was found in one of the rootkits captured on thehoneynet. It allows the attacker to eavesdrop on local users...excellent stealth properties. Some attacks captured by thehoneynet projects used spoofing for bidirectional communication...
http://www.rootsecure.net/content/downloads/pdf/unix_rootkits_overview.pdf