Detecting Linux kernel process masquerading with command line forensics
Guest Post: Learn how to use Linux command line to investigate suspicious processes trying to masquerade as kernel threads.
CARVIEW |
Craig Rowland is Founder and CEO of Sandfly Security. He has worked his entire career in cybersecurity startups.
By Craig Rowland on 27 Apr 2020
Guest Post: Learn how to use Linux command line to investigate suspicious processes trying to masquerade as kernel threads.
By Craig Rowland on 14 Oct 2019
Guest Post: Learn how to do basic live process forensics for a bind shell backdoor waiting for a connection on Ubuntu in Linux.