A proof-of-concept rootkit called Curing can bypass traditional system call monitoring using a Linux asynchronous I/O mechanism, called io_uring. Security research firm ARMO found such use of io_uring leaves a gap in Linux security tools, with actions not showing as system calls. Current tools, including Falco and Tetragon, are found to be blind to io_uring-based operations due to their reliance on system call hooking.

Commvault and Deloitte team up on enterprise cyber resilience – Blocks and Files
Commvault and Deloitte have partnered to enhance enterprise cyber resilience. This collaboration aims to bolster organizations’ defenses against cyber threats through improved data protection and