Rootkit
nouncandidate·updated May 9, 2026
A set of tools used by an attacker after gaining root-level access to a host to conceal the attacker’s activities on the host and permit the attacker to maintain root-level access to the host through covert means.
Classifications
Entity Type
Threat90%rule-basedr:entity.threat.attack.v1
?unassignedlast reviewed —
Sensitivity
unclassified
Information Class
unclassified
Variants
- plural
- Rootkits
- possessive
- Rootkit's
- pluralpossessive
- Rootkits'