eBPF rootkits: uprobe on libpam.so = cleartext creds from every sudo/ssh/VPN with zero binary modification. XDP at the NIC driver = full firewall bypass before iptables processes the packet. BPFDoor in production against telecoms since 2021. ShadowGuard hit 70+ orgs in 37 countries in Feb 2026. https://www.kayssel.com/newsletter/issue-55/
#infoSec #cyberSecurity #Pentesting #BugBounty #Offsec #Linux #ebpf
Offensive eBPF: The Kernel as Your Backdoor

eBPF rootkit mechanics, PAM credential harvesting via uprobes, process and connection hiding via getdents64 hooks, XDP magic-packet backdoor, and nation-state deployments

Kayssel

Top Linux Security Tools for Ethical Hackers (2026)

From Nmap and OpenVAS to Metasploit, SQLMap, Hydra, Wireshark, and Aircrack-ng, this guide covers the essential open-source security tools every Linux security enthusiast should know.

Read here:
https://www.linuxteck.com/linux-security-tools-for-ethical-hackers/

#linuxteck #Linux #CyberSecurity #EthicalHacking #PenTesting #InfoSec #OpenSource

Top Linux Security Tools For Ethical Hackers 2026

Discover the top Linux security tools for ethical hackers in 2026, covering Nmap, Metasploit, OpenVAS, Hydra, and Wireshark setup across Ubuntu, Kali, and RHEL.

LinuxTeck
argusred — security scan and pen test · ArgusRed

Two security tools in one CLI. Audit your code, or attack it. Same binary, two tabs.

ArgusRed
Owned Threadweaver from Hack The Box!

I have just owned challenge Threadweaver from Hack The Box

Owned Chaogen from Hack The Box!

I have just owned challenge Chaogen from Hack The Box

This chart highlights Linux-based tools commonly used by red teams to emulate real-world attacks and evaluate security controls 😎👇

The goal is awareness, not misuse. Understanding how these tools work helps defenders recognize threats, validate defenses, and strengthen their security posture.

Find high-res pdf ebooks with all my cybersecurity related infographics from https://study-notes.org

#linux #cybersecurity #infosec #kalilinux #pentesting

Owned Resizer from Hack The Box!

I have just owned challenge Resizer from Hack The Box

260618 rootshell.online

YouTube

🏛️ CISA Urges Hardening Fortinet Devices After Reports of Credential Exposure

📝 CISA is aware of global reports that malicious cyber ...

https://www.cisa.gov/news-events/alerts/2026/06/18/cisa-urges-hardening-fortinet-devices-after-reports-credential-exposure

📰 Alerts

#GovSec #Pentesting

Lightweight Asymmetric Encryption for C2 Implants — from XOR to Rabin KEM

Why Rabin beats RSA for implants: ~60 lines of pure C, no external deps, no heavy constants, provably as hard as factoring.

Covers the full crypto pipeline: XOR → AES-CTR → Rabin key encapsulation, with a working Python toolkit.

https://medium.com/@alfred.abston/lightweight-asymmetric-encryption-for-c2-implants-a-red-teamers-guide-from-xor-to-rabin-42e9b6b275d6

#redteam #infosec #malware #pentesting #crypto #cybersecurity

Lightweight Asymmetric Encryption for C2 Implants: A Red Teamer’s Guide from XOR to Rabin

A practical walkthrough of encryption choices for red team implants — from XOR and AES-CTR to Rabin key encapsulation — with a…

Medium