HELLFIRE https://www.theregister.com/2025/08/05/plague_linux_backdoor/ Researchers at German infosec services company Nextron Threat have spotted malware that creates a highly-persistent Linux backdoor and say antivirus engines do not flag the code as malicious. … “The implant is built as a malicious PAM (Pluggable Authentication Module), enabling attackers to silently bypass system authentication and gain persistent SSH access,” Pezier wrote last week, adding that the malware “integrates deeply into the authentication stack, survives system updates, and leaves almost no forensic traces. … Regards
Somewhat-Reticent By design? Linux roots go back to ( military funded ) universities who liked sharing.