Caracal is a Rust-based eBPF rootkit that hides BPF programs, maps, and processes, ideal for stealthy post-exploitation and red team operations.
Darknet
Source: Darknet
Source Link: https://www.darknet.org.uk/2025/07/caracal-rust-ebpf-rootkit-for-stealthy-post-exploitation/