ended6월 12일· 1 sources
Arch Linux Supply Chain Attack Weaponizes 400+ AUR Packages with eBPF Rootkit
Arch Linux AUR 저장소 공급망 공격, 400개 이상 패키지가 eBPF 루트킷으로 감염
Why it matters
Over 400 Arch Linux AUR packages were poisoned with dual-payload malware combining credential-stealing and eBPF rootkit capabilities in a sophisticated supply chain attack. The deployment of eBPF rootkit technology is particularly critical, as it enables kernel-level persistence that standard detection tools may fail to identify, fundamentally compromising the trust of affected systems. This incident demonstrates the escalating sophistication of supply chain threats and the need for complete system reinstallation rather than conventional remediation.
1
Sources
+0
24h
—
Growth
101d
Active
AURinfostealerrootkitArch LinuxeBPFnpm malware