ended6월 12일· 1 sources

Arch Linux Supply Chain Attack Weaponizes 400+ AUR Packages with eBPF Rootkit

Arch Linux AUR 저장소 공급망 공격, 400개 이상 패키지가 eBPF 루트킷으로 감염

Why it matters

Over 400 Arch Linux AUR packages were poisoned with dual-payload malware combining credential-stealing and eBPF rootkit capabilities in a sophisticated supply chain attack. The deployment of eBPF rootkit technology is particularly critical, as it enables kernel-level persistence that standard detection tools may fail to identify, fundamentally compromising the trust of affected systems. This incident demonstrates the escalating sophistication of supply chain threats and the need for complete system reinstallation rather than conventional remediation.

1
Sources
+0
24h
Growth
101d
Active
AURinfostealerrootkitArch LinuxeBPFnpm malware

Sources

Related Issues