<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Systemd on Vanilla InfoSec</title>
    <link>/tags/systemd/</link>
    <description>Recent content in Systemd on Vanilla InfoSec</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <lastBuildDate>Wed, 03 Sep 2025 00:00:00 +0000</lastBuildDate>
    <atom:link href="/tags/systemd/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Systemd Backdoor Services - Establishing Persistent Remote Access</title>
      <link>/posts/establishing-persistent-remote-access-to-linux-systems---systemd-backdoor-services/</link>
      <pubDate>Wed, 03 Sep 2025 00:00:00 +0000</pubDate>
      <guid>/posts/establishing-persistent-remote-access-to-linux-systems---systemd-backdoor-services/</guid>
      <description>Overview Systemd services are the standard means for managing persistent processes in most modern Linux distributions. Because services start automatically with the system during the init sequence, adversaries often abuse them for persistent access to target systems.&#xA;A stealthy backdoor service may masquerade itself as a legitimate system component and launch attacker-controlled payloads at boot. This enables hackers with the opportunity to re-enter an environment if something does not go according to plan.</description>
    </item>
  </channel>
</rss>
