Processes running with an immutable binary are nearly always malware on Linux. Learn what this attack is, how to automatically detect it, and command line forensics you can use to investigate suspicious processes using this attack tactic.
Sandfly's agentless Linux EDR is able to find this and many other types of Linux attacks without deploying any endpoint agents. Find out more and get a free license below:
https://www.sandflysecurity.com
Be sure to subscribe and follow us:
https://www.sandflysecurity.com
/ sandflysecurity
/ sandfly