Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Linux rootkits explained – Part 2: Loadable kernel modules

Summary

Part two of Wiz's Linux rootkit series: how loadable kernel modules (LKMs) work, how threat actors like TeamTNT and Winnti abuse them in the wild, and how to detect kernel-space rootkits.
Published
Collected

original ↗

Related coverage

back