logoalt Hacker News

happyPersonRyesterday at 4:19 PM4 repliesview on HN

lol there’s no real technical details in this article sadly. Checkpoint has a better analysis.

https://research.checkpoint.com/2026/voidlink-the-cloud-nati...

Some kind of opensource ish malware framework the kids are running that can use eBPF …. In addition to limiting CAP_BPF or CAP_SYS_ADMIN you should also take other measures.


Replies

reincarnate0x14yesterday at 7:30 PM

Much better article, thanks.

That reminds me of the ninjaone interface, they could probably be selling that as a legit management tool, minus the detection avoidance and self-deletion feature :)

jjmarryesterday at 4:58 PM

An B2B SaaS platform with an amazing plugin ecosystem that works on my Kubernetes cluster, for any Linux distribution, written in Zig?

Where do I sign up?

dralleyyesterday at 4:23 PM

>VoidLink is an impressive piece of software, written in Zig for Linux

Finally, Zig has a user in production /s

(I like Zig, it's a joke, don't hate me)

show 2 replies