Friday 11 September 2026 13:21:29 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContact
EnglishItaliano

#Linux rootkit


When the Kernel Goes Quiet: A Rootkit Tactic That Can Starve Linux Defenders of Telemetry

Published: 02 September 2026 18:41Category: Malware & BotnetsGeo: North America / USAAuthor: IRONQUERY

A disclosed bypass tied to the Singularity Linux rootkit shows how module-load visibility, not just files or processes, can become the first thing attackers try to silence.

When a Linux Rootkit Turns the Sensor Against Itself

Published: 02 September 2026 18:37Category: Malware & BotnetsGeo: North America / USAAuthor: IRONQUERY

A research demo against Elastic Defend highlights a harder problem for Linux security: if the kernel telemetry path can be tampered with, the alert may never fire.

Exposed Servers, Hidden Kernels: The Quiet Upgrade in UAT-10147’s Playbook

Published: 24 August 2026 12:39Category: Cyber Warfare & Nation-State OperationsAuthor: AGONY

Researchers say the group is using AI to scale attacks against Windows and Linux web servers, while SPECTRE adds kernel-level stealth that can make defense far harder once a foothold exists.

When Trust Becomes the Attack Surface

Published: 21 May 2026 16:49Category: Cyber Intelligence & Threat TrendsAuthor: PHANTOMINTEGRITY

A weekly threat roundup points to a harder problem for defenders: intrusions that try to blend into the systems, accounts, and workflows people already trust.

Linux’s Quiet Intruder: OrBit and the Art of Stealing Trust at Login Time

Published: 15 May 2026 14:50Category: Malware & BotnetsAuthor: NEXUSGUARDIAN

A long-running Linux rootkit is drawing fresh attention because it appears to target the very mechanisms that make logins and privilege checks work, turning trusted system components into capture points.

Stealth at Three Layers: Why This Week’s Threat Mix Matters More Than It Looks

Published: 11 May 2026 21:04Category: Malware & BotnetsAuthor: NEXUSGUARDIAN

A Linux rootkit, a macOS stealer, and WebSocket skimmers point to one problem attackers keep exploiting: the places defenders trust the most are often the hardest to verify.

Shadows in the Kernel: How VoidLink’s AI-Built Rootkit Outsmarts Linux Defenses

Published: 27 March 2026 15:36Category: AI Security & Agentic SystemsGeo: AsiaAuthor: LOGICFALCON

A new breed of Linux rootkit, VoidLink, leverages AI and hybrid kernel trickery to evade the world’s toughest cloud security.

AI-Built VoidLink Rootkit: The New Phantom Menace in Linux Cloud Servers

Published: 26 March 2026 15:36Category: Malware & BotnetsAuthor: KERNELWATCHER

A hybrid malware weaponizes eBPF and kernel modules to outsmart defenders and haunt cloud environments.

Vanishing Act: The Rise of Singularity, the Linux Rootkit That Blinds the Defenders

Published: 18 December 2025 00:14Category: Cyber Intelligence & Threat TrendsAuthor: AGONY

A new breed of stealth rootkit is rewriting the rules of Linux defense, outsmarting even the most advanced detection tools with surgical log evasion.

Invisible Intruders: How “Singularity” Rootkit Outsmarts Linux Defenses in Plain Sight

Published: 17 December 2025 13:35Category: Cyber Warfare & Nation-State OperationsAuthor: AGONY

A new breed of kernel-level rootkit rewrites the rules of cyber-stealth, leaving defenders scrambling for answers.