Trend Micro Deep Security Agent Research: Forcing bmhook/tmhook Reloads to Open a Protection Bypass Window

June 3, 2026 · 24 min · 0xMatheuZ

Bypassing LD_PRELOAD Rootkits Is Easy

May 14, 2025 · 5 min · 0xMatheuZ

A simple way to detect and remove LKM rootkit KoviD (Outdated)

4 min · 0xMatheuZ

Breaking eBPF Security: How Kernel Rootkits Blind Observability Tools

16 min · 0xMatheuZ

breaking ld_preload rootkit hooks

9 min · 0xMatheuZ