Arthur BesseM to Linux@lemmy.ml • 1 year agoNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comexternal-linkmessage-square7fedilinkarrow-up129arrow-down10
arrow-up129arrow-down1external-linkNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comArthur BesseM to Linux@lemmy.ml • 1 year agomessage-square7fedilink
minus-square@Thann@lemmy.mllinkfedilink3•1 year ago With the help of LD_PRELOAD, Symbiote will load before any other shared objects. That allows the malware to tamper with other library files loaded for an application. The image below shows a summary of all of the malware’s evasion techniques.