Vista elenco

Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit

12 Giugno 2026 ore 21:33
Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer on any machine that built them. The malware is a Rust binary built to harvest developer secrets. When it lands with root, it can also load an eBPF rootkit to hide itself. The AUR is Arch Linux's community package collection, and it is separate

China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade

12 Giugno 2026 ore 20:17
Instead of hiding on the laptops and servers defenders watch most closely, a China-nexus group spent close to a decade hidden inside the Linux login system itself. Sygnia, which tracks the group as Velvet Ant, says it backdoored the PAM and OpenSSH components that decide who is allowed to sign in, planting its access where ordinary cleanup could not reach it. The network it targeted had no

❌