URL has been copied successfully!
LinkPro Linux Rootkit Uses eBPF to Hide and Activates via Magic TCP Packets
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

LinkPro Linux Rootkit Uses eBPF to Hide and Activates via Magic TCP Packets

An investigation into the compromise of an Amazon Web Services (AWS)-hosted infrastructure has led to the discovery of a new GNU/Linux rootkit dubbed LinkPro, according to findings from Synacktiv.”This backdoor features functionalities relying on the installation of two eBPF [extended Berkeley Packet Filter] modules, on the one hand to conceal itself, and on the other hand to be remotely

First seen on thehackernews.com

Jump to article: thehackernews.com/2025/10/linkpro-linux-rootkit-uses-ebpf-to-hide.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link