Vlany: A Linux (LD_PRELOAD) rootkit

Posted by eov eov on Nov 10

Features:

Process hiding
User hiding
Network hiding
LXC container
Anti-Debug
Anti-Forensics
Persistent (re)installation & Anti-Detection
Dynamic linker modifications
Backdoors
accept() backdoor (derived from Jynx2)
PAM backdoor
PAM auth logger
vlany-exclusive commands

Download: https://github.com/mempodippy/vlany