Tyton is a lightweight, open-source kernel-mode rootkit detection tool for Linux systems. Designed to identify stealthy kernel-level threats, Tyton offers a focused approach to uncovering hidden modules and system call table hooks. Key Features Notifications: Users (including myself) do not actively monitor their journald logs, so a userland notification daemon has been included to monitor […
Darknet
Source: Darknet
Source Link: https://www.darknet.org.uk/2025/04/tyton-kernel-mode-rootkit-hunter-for-linux/