Analyzing Linux Kernel Rootkits

Use when detect kernel-level rootkits in Linux memory dumps using Volatility3 linux plugins (check_syscall, lsmod, hidden_modules), rkhunter system scanning, and /proc vs /sys discrepancy analysis to identify hooked syscalls, hidden kernel modules, and tampered system structures. Use when detecting kernel-level rootkits in linux memory dumps using volatility3 linux.

oyi77 98aa8b8 7.9 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/analyzing-linux-kernel-rootkits commit 98aa8b8a49

Frequently asked questions

npx skillmds add oyi77/analyzing-linux-kernel-rootkits