Skip to content

[Intel]: https://github.com/eurecom-s3/lemon #824

@timb-machine

Description

@timb-machine

Area

Defensive tools

Parent threat

Persistence, Defense Evasion

Finding

https://github.com/eurecom-s3/lemon

Industry reference

uses:eBPF
attack:T1564:Hide Artifacts
attack:T1014:Rootkit

Malware reference

No response

Actor reference

No response

Component

Linux

Scenario

No response

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions