Comandos típicos:
# dpkg --list # dpkg --info packageName # apt-get remove packageName
apt-get update && apt-get upgrade
chage -l userName
chage -M 60 -m 7 -W 7 userName
faillog faillog -r -u userName
awk -F: '($2 == "") {print}' /etc/shadow
awk -F: '($3 == "0") {print}' /etc/passwd
nmap -sT -O servidor.ejemplo.com
# Turn on execshield kernel.exec-shield=1 kernel.randomize_va_space=1 # Enable IP spoofing protection net.ipv4.conf.all.rp_filter=1 # Disable IP source routing net.ipv4.conf.all.accept_source_route=0 # Ignoring broadcasts request net.ipv4.icmp_echo_ignore_broadcasts=1 net.ipv4.icmp_ignore_bogus_error_messages=1 # Make sure spoofed packets get logged net.ipv4.conf.all.log_martians = 1
# Buscar archivos con privilegios: find / -perm +4000 # Buscar archivos con privilegios de grupo find / -perm +2000 # Combinar los dos anteriores find / \( -perm -4000 -o -perm -2000 \) -print find / -path -prune -o -type f -perm +6000 -ls
Theme by Danetsoft and Danang Probo Sayekti inspired by Maksimer