Arthur Besse@lemmy.mlM to Linux@lemmy.ml · 3 years agoNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comexternal-linkmessage-square7fedilinkarrow-up129arrow-down10
arrow-up129arrow-down1external-linkNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comArthur Besse@lemmy.mlM to Linux@lemmy.ml · 3 years agomessage-square7fedilink
minus-squareThann@lemmy.mllinkfedilinkarrow-up3·3 years ago With the help of LD_PRELOAD, Symbiote will load before any other shared objects. That allows the malware to tamper with other library files loaded for an application. The image below shows a summary of all of the malware’s evasion techniques.