1 min read
Linux Hacked | Linux Hacking | Christchurch Hacker Con 2017 Linux Forensics Slides
Publication Date: 29 May 2018
Sandfly Security - Agentless Linux EDR and Incident Response Updated on September 29, 2026
Publication Date: 14 November 2023
Sandfly founder Craig Rowland recently spoke at the Oslo Cold Incident Response Conference on evasive Linux malware. Although talks were not recorded, he made a video of the presentation he gave below.
This talk focused on the infamous BPFDoor backdoor. BPFDoor used a combination of simple evasion techniques to avoid detection on Linux by doing the following:
In this presentation we go over the elements that make for effective Linux malware and how to detect it using simple command line forensics.
Slides for the talk are below:
Evasive Linux Malware and Backdoors Slides
We thank the organizers of the conference for having us speak.
Post Tags:
Share this post:
1 min read
Publication Date: 29 May 2018
1 min read
Publication Date: 04 December 2024
1 min read
Sandfly Blog Hunting for Linux Intrusion Tactics is Better than Searching for Exploit Signatures 13 February 2019 Malware