YoVDO

Horse Pill - A New Type of Linux Rootkit

Offered By: Black Hat via YouTube

Tags

Black Hat Courses Cybersecurity Courses Risk Mitigation Courses Linux Containers Courses

Course Description

Overview

Explore a groundbreaking presentation on a novel Linux rootkit that exploits container technology for malicious purposes. Delve into the technical intricacies of this advanced threat, capable of infecting and persisting in systems with UEFI secure boot enabled, bypassing kernel module signing protections. Discover how this nearly invisible backdoor operates without a malicious kernel module and can be remotely controlled through a covert network channel. Learn about the potential risks to Linux systems and, more importantly, gain insights into effective mitigation strategies and solutions to enhance boot security. Equip yourself with the knowledge to understand and combat this innovative cybersecurity challenge in the Linux ecosystem.

Syllabus

Horse Pill: A New Type of Linux Rootkit


Taught by

Black Hat

Related Courses

Управление вычислениями
Bioinformatics Institute via Stepik
Monitoring Containerized Application Health with Docker
Pluralsight
CentOS Enterprise Linux 7 Virtualization Management
Pluralsight
Getting Started with Docker on Windows
Pluralsight
Scenario Based LXD/LXC Security
A Cloud Guru