MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
linux
Recherche

Hackers Can Now Bypass Linux Security Thanks To Terrifying New Curing Rootkit

jeudi 24 avril 2025, 16:02 , par Slashdot
Hackers Can Now Bypass Linux Security Thanks To Terrifying New Curing Rootkit
BrianFagioli writes: ARMO, the company behind Kubescape, has uncovered what could be one of the biggest blind spots in Linux security today. The company has released a working rootkit called 'Curing' that uses io_uring, a feature built into the Linux kernel, to stealthily perform malicious activities without being caught by many of the detection solutions currently on the market.

At the heart of the issue is the heavy reliance on monitoring system calls, which has become the go-to method for many cybersecurity vendors. The problem? Attackers can completely sidestep these monitored calls by leaning on io_uring instead. This clever method could let bad actors quietly make network connections or tamper with files without triggering the usual alarms.

Read more of this story at Slashdot.
https://linux.slashdot.org/story/25/04/24/142249/hackers-can-now-bypass-linux-security-thanks-to-ter...

Voir aussi

News copyright owned by their original publishers | Copyright © 2004 - 2025 Zicos / 440Network
Date Actuelle
jeu. 24 avril - 23:36 CEST