Elastic Security Labs has detailed the evolution of Linux rootkits in a two-part research series published on March 5, 2026. These modern threats exploit kernel features like eBPF and io_uring to remain hidden in cloud, IoT, and server environments. The research highlights how such rootkits evade traditional detection methods.

Imeripotiwa na AI

Oracle has updated its bpftune tool to version 0.4-1, enhancing automated tuning of Linux kernels using eBPF technology. The release improves usability with better documentation and focuses on optimizing network and memory settings in dynamic environments. This development aids system administrators in cloud and enterprise setups by reducing manual interventions.

Alhamisi, 11. Mwezi wa kumi na mbili 2025, 18:56:20

Microsoft resumes work on Hornet security for Linux eBPF

Alhamisi, 4. Mwezi wa kumi na mbili 2025, 00:05:31

BPFDoor and Symbiote rootkits exploit eBPF on Linux systems

Jumamosi, 18. Mwezi wa kumi 2025, 00:07:55

LinkPro rootkit exploits Linux eBPF for stealthy attacks

Tovuti hii inatumia vidakuzi

Tunatumia vidakuzi kwa uchambuzi ili kuboresha tovuti yetu. Soma sera ya faragha yetu kwa maelezo zaidi.
Kataa