MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
linux
Search

Hackers Can Now Bypass Linux Security Thanks To Terrifying New Curing Rootkit

Thursday April 24, 2025. 04:02 PM , from Slashdot
Hackers Can Now Bypass Linux Security Thanks To Terrifying New Curing Rootkit
BrianFagioli writes: ARMO, the company behind Kubescape, has uncovered what could be one of the biggest blind spots in Linux security today. The company has released a working rootkit called 'Curing' that uses io_uring, a feature built into the Linux kernel, to stealthily perform malicious activities without being caught by many of the detection solutions currently on the market.

At the heart of the issue is the heavy reliance on monitoring system calls, which has become the go-to method for many cybersecurity vendors. The problem? Attackers can completely sidestep these monitored calls by leaning on io_uring instead. This clever method could let bad actors quietly make network connections or tamper with files without triggering the usual alarms.

Read more of this story at Slashdot.
https://linux.slashdot.org/story/25/04/24/142249/hackers-can-now-bypass-linux-security-thanks-to-ter...

Related News

News copyright owned by their original publishers | Copyright © 2004 - 2025 Zicos / 440Network
Current Date
Apr, Thu 24 - 19:51 CEST