Bypassing LD_PRELOAD Rootkits Is Easy

May 14, 2025 · 5 min · 0xMatheuZ

A simple way to detect and remove LKM rootkit KoviD (Outdated)

4 min · 0xMatheuZ

Detecting rootkits based on ftrace hooking.

2 min · 0xMatheuZ

ElfDoor-gcc

6 min · 0xMatheuZ

How detect a LD_PRELOAD rootkit and hide from ldd & /proc

6 min · 0xMatheuZ