4 ms·
That is probably not what their meant, but if you are able to exploit the blob of the nvidia driver, then yes. But you are already able to load a module into t
by bebna 11y ago
That is probably not what their meant, but if you are able to exploit the blob of the nvidia driver, then yes.
But you are already able to load a module into the kernel, then you already have root level access and other, easier, options are open for you.
Because modules can be easily listed and therefor monitored, a change of the modules could trigger an alarm to the admin. So it isn't really stealthy either.
- deleted 11y ago[deleted]
- nitrogen 11y agoA malicious kernel module can remove itself from the output of lsmod.