1 min read
Linux Hacked | Linux Hacking | Christchurch Hacker Con 2017 Linux Forensics Slides
Publication Date: 29 May 2018
Sandfly Security - Agentless Linux EDR and Incident Response Updated on September 29, 2026
08 June 2022
Bleeping Computer wrote an extensive article covering the evasive BPFDoor malware found on many Linux systems globally:
BPFDoor: Stealthy Linux malware bypasses firewalls for remote access
The article discusses the background of discovery by researchers with technical details provided by Sandfly Security.
Although the backdoor is evasive, it is in fact easily found if you are looking for it. Sandfly can find this malware without any updates (and likely since 1.0 of our product). Our customers will get very clear alerts it is running when in the waiting and active backdoor operating states. Please see our full technical write-up for more details:
BPFDoor - An Evasive Linux Backdoor Technical Analysis
1 min read
Publication Date: 29 May 2018
1 min read
Sandfly Blog Linux Command Line Forensics Presentation at Christchurch Hacker Con 2017 26 April 2018 Malware
1 min read
Sandfly Blog Sandfly 2.8.2 – Over 1,000 Linux Compromise Detection Modules and More 19 January 2021 Product Update