>>27744 (OP)necro but i'm still thinking of how can you prevent something like this. looks like SELinux in enforcing MLS/MCS mode is the only MAC that can do anything against such backdoors, because profiling the entire system with apparmor is almost impossible. but i hate SELinux for being that complex. No easy options.