Hacker News new | ask | show | jobs
by saagarjha 579 days ago
They load a kernel driver so your avoidance of LD_PRELOAD wouldn’t really be able to protect against this anyway.
1 comments

Unless I misread they don't state exactly how the attack escalates privileges to install the driver. Could there be two versions of the attack with varying levels of severity?