Arthur BesseMA to Linux • 1 year agoNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comexternal-linkmessage-square7arrow-up129arrow-down10
arrow-up129arrow-down1external-linkNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comArthur BesseMA to Linux • 1 year agomessage-square7
minus-square@Thannlinkfedilink3•1 year ago With the help of LD_PRELOAD, Symbiote will load before any other shared objects. That allows the malware to tamper with other library files loaded for an application. The image below shows a summary of all of the malware’s evasion techniques.