Arthur BesseM to [email protected] • 2 years agoNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comexternal-linkmessage-square7fedilinkarrow-up129arrow-down10
arrow-up129arrow-down1external-linkNew ultra-stealthy Linux backdoor "Symbiote" isn’t your everyday malware discoveryarstechnica.comArthur BesseM to [email protected] • 2 years agomessage-square7fedilink
minus-square@[email protected]linkfedilink3•2 years ago With the help of LD_PRELOAD, Symbiote will load before any other shared objects. That allows the malware to tamper with other library files loaded for an application. The image below shows a summary of all of the malware’s evasion techniques.