How to protect your Linux box with AV, Malware Detection and Root-Kit Hunter

How to protect your Linux box with AV, Malware Detection and Root-Kit Hunter

#rederecord #antivirus #linuxserver #protection #cybersecuritythreats #clamav #lmd #rkhunter #malware #ramsonware

In recent days, we have been following an attack on Rede Record TV Network, one of the largest Brazilian broadcasters, where a ransomware with a demand of 5 million dollars appears

In this article, using open source tools, I teach the basic installation of an antivirus, a Malware detector and a rootkit detector for Linux

In my next article, I will demonstrate how attacks can arise, the importance of mitigating physical and logical access to employees, and how unfortunately having a Disaster Recovery Plan will not guarantee peace of mind due to data leaks on the Deep Web

Attention

It is of fundamental importance to make it clear that the protection technique below refers to local servers, most WAFs nowadays should be able to somehow block Malware/Ransomware

However, if there is an attack on internal devices, either via BYODs or physical access to the company, this could be a last protection resource to be broken before the worst happens.

No alt text provided for this image

Get to work!

ClamAV

ClamAV is a free antivirus software, cross-platform antimalware toolkit able to detect many types of malware, including viruses. It was developed for Unix and has third party versions available for AIX, BSD, HP-UX, Linux, macOS, OpenVMS, OSF and Solaris. As of version 0.97.5, ClamAV builds and runs on Microsoft Windows.?

How to install it

No alt text provided for this image

LMD

Linux Malware Detect, abbreviated as LMD or maldet, is a software package that looks for malware on Linux systems and reports on it.?

How to install it

No alt text provided for this image

Root-kit Hunter

rkhunter (Root Kit Hunter) is?a Unix-based tool that scans for rootkits, backdoors, and possible local exploits. It is a good part of a hardened web server, and is designed to notify the administrator quickly when something suspicious happens on the server's file system.

How to install it

No alt text provided for this image

cYa

要查看或添加评论,请登录

Dan Korovtch的更多文章

社区洞察

其他会员也浏览了