Files
atomic-red-team/Linux/Defense_Evasion/Rootkits.md
T
JeremyNGalloway 08de1f2ead Initial upload
2018-02-27 11:07:04 -06:00

21 lines
292 B
Markdown

## Rootkits
MITRE ATT&CK Technique: [T1014](https://attack.mitre.org/wiki/Technique/T1014)
### Loadable Kernel Module based Rootkit
Input:
sudo insmod MODULE.ko
OR
Input:
sudo modprobe MODULE.ko
### LD_PRELOAD based Rootkit
Input:
export LD_PRELOAD=$PWD/libmy_r00tkit.so