As cited
Copy frozen at (site build).
threat intel
Linux rootkits explained - Part 2: Loadable kernel modules
This article examines loadable kernel modules (LKMs) and kernel-space rootkits, covering what LKMs are, how attackers abuse them to establish persistence, and detection methods.
Why it matters: Security practitioners need to understand LKM-based rootkits because they operate at kernel privilege level, making them difficult to detect and remove, and are commonly deployed in advanced persistent threats targeting Linux systems.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Linux rootkits explained - Part 2: Loadable kernel modules
This article examines loadable kernel modules (LKMs) and kernel-space rootkits, covering what LKMs are, how attackers abuse them to establish persistence, and detection methods.
Why it matters: Security practitioners need to understand LKM-based rootkits because they operate at kernel privilege level, making them difficult to detect and remove, and are commonly deployed in advanced persistent threats targeting Linux systems.
- Source published
- First seen by Cybersecurity Tracker