Arthur BesseMA to Linux · 3 years agoNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comexternal-linkmessage-square7fedilinkarrow-up129arrow-down10
arrow-up129arrow-down1external-linkNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comArthur BesseMA to Linux · 3 years agomessage-square7fedilink
minus-squareThannlinkfedilinkarrow-up3·3 years ago With the help of LD_PRELOAD, Symbiote will load before any other shared objects. That allows the malware to tamper with other library files loaded for an application. The image below shows a summary of all of the malware’s evasion techniques.