Security news aggregator

Latest coverage for Rootkit

Stay informed on rootkit threats. Learn about detection, removal, and prevention to secure your systems from this stealthy type of malware.

77 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Rootkit is a type of malicious software designed to gain unauthorized root or administrative access to a target device or network. Unlike many forms of malware, rootkits are particularly insidious because they can actively hide their presence or the presence of other malicious software, making detection and removal exceptionally challenging.

In the context of information security, a rootkit poses a severe threat as it may allow attackers to maintain persistent and undetected access to the infected system. This ongoing access can be used for malicious activities including but not limited to data theft, system monitoring, creation of backdoors, and distribution of other malware. Understanding and defending against rootkits are essential for maintaining system integrity and protecting sensitive information.

Volume over time

Weekly headline count for the current query.

Showing 20 most recent headlines of 77 Filtered view

TrendAI™ Research breaks down Quasar Linux (QLNX), a previously undocumented sophisticated Linux RAT with low detection rates. In this blog, we examine a full-featured Linux threat incorporating a rootkit, a PAM backdoor, credential harvesting, and more, revealing how this malware enables stealthy access, persistence, and potential supply-chain attacks.

Monday is back, and the weekend’s backlog of chaos is officially hitting the fan. We are tracking a critical zero-day that has been quietly living in your PDFs for months, plus some aggressive state-sponsored meddling in infrastructure that is finally coming to light. It is one of those mornings where the gap between a quiet shift and a full-blown incident response is basically

This week’s cyber stories show how fast the online world can turn risky. Hackers are sneaking malware into movie downloads, browser add-ons, and even software updates people trust. Tech giants and governments are racing to plug new holes while arguing over privacy and control. And researchers keep uncovering just how much of our digital life is still wide open

Trend Micro Research, News and Perspectives 7 months, 2 weeks ago

Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits

Trend™ Research has uncovered an attack campaign exploiting the Cisco SNMP vulnerability CVE-2025-20352, allowing remote code execution and rootkit deployment on unprotected devices, with impacts observed on Cisco 9400, 9300, and legacy 3750G series.

/* ===== Container ===== */ .td-wrap {} /* ===== Section ===== */ .td-section { } .td-title { margin: 16px 0 4px; font-size: 32px; line-height: 1.2; font-weight: 800; } .td-subtitle { margin: 0 0 24px; color: #64748b; font-size: 16px; } /* ===== Timeline ===== */ .td-timeline { position: relative; margin: 0 !important;padding: 0!important; list-style: none; } /* spine */ .td-timeline:before {

Bank Info Security 10 months, 2 weeks ago

Hackers Use Backdoor to Steal Data From SonicWall Appliance

Hacking Group UNC6148 Steals Credentials With New OVERSTEP Rootkit, Google SaysA cybercrime group used a backdoor in a fully patched SonicWall appliance to steal credentials and may have sold the stolen data to ransomware groups as part of an ongoing campaign, Google Threat Intelligence Group found. The firm attributed the campaign to a cybercrime group it tracks as UNC6148.

Loading more headlines...