MatheuZ (@matheuzsecurity) 's Twitter Profile
MatheuZ

@matheuzsecurity

Pentester
Cyber Threat Intelligence
Malware Researcher

ID: 1310307895192453120

linkhttps://github.com/MatheuZSecurity calendar_today27-09-2020 19:59:06

564 Tweet

900 Followers

352 Following

MatheuZ (@matheuzsecurity) 's Twitter Profile Photo

Singularity LKM rootkit now resets tainted when loaded and lets you change the value to reduce behavioral detection, without kernel thread resetting every x seconds. Src: github.com/MatheuZSecurit… #linux #rootkits #malware

Singularity LKM rootkit now resets tainted when loaded and lets you change the value to reduce behavioral detection, without kernel thread resetting every x seconds.

Src: github.com/MatheuZSecurit…

#linux #rootkits #malware
Craig Rowland - Agentless Linux Security (@craighrowland) 's Twitter Profile Photo

My presentation on Hunting Linux Stealth Rootkits I gave at the Oslo FIRST Cold Incident Response Conference is now available. We used the recently leaked Chinese rootkit in Phrack as an example of how to find and decloak this attack by searching for: - Data Leaks -

My presentation on Hunting Linux Stealth Rootkits I gave at the Oslo FIRST Cold Incident Response Conference is now available. We used the recently leaked Chinese rootkit in Phrack as an example of how to find and decloak this attack by searching for: 

- Data Leaks
-
Craig Rowland - Agentless Linux Security (@craighrowland) 's Twitter Profile Photo

If this is interesting to you, please see this link below and get the presentation and share it. Stealth rootkits are interesting, but don't let them be a bogey man that intimidates you. sandflysecurity.com/blog/linux-ste…

MatheuZ (@matheuzsecurity) 's Twitter Profile Photo

Singularity Rootkit now can bypass byte file reading detections, see now. #malware #rootkits #lkm #linux github.com/MatheuZSecurit…

MatheuZ (@matheuzsecurity) 's Twitter Profile Photo

Singularity: Deep Dive into a Modern Stealth Linux Kernel Rootkit I published a very interesting article detailing a little more about my Linux Kernel Rootkit and its system call hooking. Feel free to read and share. blog.kyntra.io/Singularity-A-…

MatheuZ (@matheuzsecurity) 's Twitter Profile Photo

Singularity rootkit update: ICMP reverse shell trigger, which activates a reverse connection through custom ICMP packets. Source: github.com/MatheuZSecurit… #linux #rootkits #lkm #singularity #malware #icmp #backdoor #hooking

Singularity rootkit update: ICMP reverse shell trigger, which activates a reverse connection through custom ICMP packets.

Source: github.com/MatheuZSecurit…

#linux #rootkits #lkm #singularity #malware #icmp #backdoor #hooking
MatheuZ (@matheuzsecurity) 's Twitter Profile Photo

Evading Elastic Security - Deep dive into bypassing detections through string obfuscation, symbol randomization, XOR-encoded fragments & behavioral evasion techniques matheuzsecurity.github.io/hacking/bypass… #infosec #redteam #linux #rootkit #elastic #malware #rootkits