“Stealth Linux Rootkit ‘Curing’ Evades Detection by Exploiting io_uring Mechanism”
A new Linux rootkit called "Curing" exploits a critical security vulnerability by using io_uring—an asynchronous I/O mechanism introduced in 2019—to bypass system call monitoring. This technique creates a major blind spot for security tools like Falco and Tetragon, which rely on system...
