-
Microsoft flags macOS bug allowing remote rootkit installs
22 Jan 2025 10:20 GMT
… remotely, allowing them to install rootkits. With access to the operating …
-
Pumakit – Sophisticated Linux Rootkit That Persist Even After Reboots
20 Jan 2025 15:18 GMT
Pumakit is a sophisticated rootkit that leverages system call interception … and maintains stealthy operations.
This rootkit facilitates data exfiltration by providing … response plans to effectively handle rootkit infections and system compromises that …
-
Pumakit – A Sophisticated Linux Rootkit Attack Critical Infrastructure
17 Jan 2025 04:47 GMT
… and highly sophisticated Linux rootkit named Pumakit has been … to swiftly respond to rootkit infections.
Elastic Security Labs … addresses associated with the rootkit.
Key indicators include … advanced evasion techniques, this rootkit has become a formidable …
-
Navigating The Rising Threat of Zero-Day Rootkits in Linux Environments
14 Jan 2025 19:50 GMT
… traditional security measures and install rootkits undetected. Not having been previously … Combating advanced malware like this rootkit requires a multilayered security … unnecessary rights that require removal.
Rootkit detection tools can also significantly …
-
Microsoft Uncovers macOS Vulnerability CVE-2024-44243 Allowing Rootkit Installation
14 Jan 2025 18:11 GMT
… malware authors to successfully install rootkits, create persistent malware, bypass Transparency …
-
Rootkit Malware Exploiting 0-Day Vulnerabilities to Control Linux Systems Remotely
13 Jan 2025 21:16 GMT
Fortinet researchers uncovered an advanced rootkit malware exploiting multiple zero-day … ensure persistence, the attackers embedded rootkit startup entries in critical Linux … task execution.
Capabilities of the Rootkit Malware
Attackers remotely executed Linux …
-
PUMAKIT, a sophisticated rootkit that uses advanced stealth mechanisms
15 Dec 2024 20:41 GMT
… discovered PUMAKIT, a Linux rootkit capable of hiding files, … kernel module (LKM) rootkit called PUMAKIT that supports … files, directories, and the rootkit itself, while evading debugging … kernel functions. The LKM rootkit demonstrates this behavior”
The …
-
PUMA creeps through Linux with a stealthy rootkit attack
13 Dec 2024 17:47 GMT
… , and /memfd:wpn, a rootkit loader. The loader evaluates the … , and prepares the system for rootkit deployment.
A temporary script, script … of the PUMA kernel rootkit module. The rootkit embeds Kitsune SO to …
-
New Linux Rootkit PUMAKIT Uses Advanced Stealth Techniques to Evade Detection
13 Dec 2024 14:22 GMT
… loadable kernel module (LKM) rootkit that employs advanced stealth … shared object (SO) userland rootkit called Kitsune ("lib64… staged deployment, the LKM rootkit ensures it only activates … prior to unleashing the rootkit. PUMAKIT has not been …
-
Malware Exploits Trusted Avast Anti-Rootkit Driver to Disable Security Software
25 Nov 2024 18:26 GMT
… a legitimate Avast Anti-Rootkit driver to gain kernel- … exploits a legitimate Avast Anti-Rootkit driver, aswArPot.sys, to … uses the Avast Anti-Rootkit driver to terminate the … , meant to remove malicious rootkits, unintentionally disables legitimate security …