Three Linux rootkits use eBPF to blind ss, netstat, bpftool - and kill your debugger before it attaches. https://intel.threadlinqs.com/threat/TL-2026-2624 #ThreatIntel #CVE_2024_23897 #LinkPro #VoidLink

Three Linux rootkits use eBPF to blind ss, netstat, bpftool - and kill your debugger before it attaches. https://intel.threadlinqs.com/threat/TL-2026-2624 #ThreatIntel #CVE_2024_23897 #LinkPro #VoidLink