Linux Furtex Toolkit Enables Stealthy Process Injection and Data Exfiltration
ID: 88c43d15-4fca-5a07-9b26-617429b3d5f9
STIX ID: report--88c43d15-4fca-5a07-9b26-617429b3d5f9
Feed Name: Cyber Press
Threat Score
Furtex is a newly disclosed Linux post-exploitation and evasion framework built around raw io_uring and eBPF operations that packages stealthy file/network access, process injection, BPF map/program manipulation, and telemetry suppression; the release is presented as a research/red-team toolkit but signals growing offensive use of legitimate kernel features and warns defenders to monitor unexpected io_uring and BPF activity, raw sockets, and audit suppression.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
