St. Jude model?


Is anyone here familiar with something called the St. Jude model of
root exploit detection (see http://sourceforge.net/projects/stjude)?
There is a paper explaining the idea on the website, as well as a
linux kernel module.  It sounds like a good idea, but has anyone here
used it?

