LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 06-22-2015, 04:51 AM   #1
NM04
Member
 
Registered: Jan 2011
Distribution: Back Track,Fedora,centos
Posts: 240

Rep: Reputation: 14
Need guidance mitigating cyber attacks


Hi, I would like to know what steps/commands/procedure should be executed if the network is breached. How to mitigate such situations.
 
Old 06-22-2015, 09:17 AM   #2
jamison20000e
Senior Member
 
Registered: Nov 2005
Location: ...uncanny valley... infinity\1975; (randomly born:) Milwaukee, WI, US( + travel,) Earth&Mars (I wish,) END BORDER$!◣◢┌∩┐ Fe26-E,e...
Distribution: any GPL that work on freest-HW; has been KDE, CLI, Novena-SBC but open.. http://goo.gl/NqgqJx &c ;-)
Posts: 4,888
Blog Entries: 2

Rep: Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567
Hi.

Found: http://www.veracode.com/security/linux-hacking

Hope it helps, have fun!
 
Old 06-24-2015, 06:22 PM   #3
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Quote:
Originally Posted by NM04 View Post
Hi, I would like to know what steps/commands/procedure should be executed if the network is breached. How to mitigate such situations.
Not the answer you want to hear but it kind of depends. The first important distinction to make is if this applies to any governmental, institutional or commercial or "just" home or SOHO property. The reason is that if you're part of the first group then there [c|sh]ould be procedures and incident handling personnel in place already. In case of the latter you could look at what your governments National Security or Cybercrime unit, Computer Emergency Response Team (CERT/CSIRT) or related institutions may offer (like http://resources.sei.cmu.edu/library...m?assetid=6305 or more practical: http://www.k-state.edu/its/security/...cidentmgt.html). Other resources include for example the SANS Reading Room (for example http://www.sans.org/reading-room/whi...izations-32979) and NIST (like http://nvlpubs.nist.gov/nistpubs/Spe...P.800-61r2.pdf).

In short: a little bit more detail could help.
 
Old 06-26-2015, 01:22 AM   #4
NM04
Member
 
Registered: Jan 2011
Distribution: Back Track,Fedora,centos
Posts: 240

Original Poster
Rep: Reputation: 14
It Applies to educational institute, and there is no incident handling policy in place. How do I create one such policy. I will explore those links and will reply later.

regards,
 
Old 06-26-2015, 04:51 PM   #5
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Quote:
Originally Posted by NM04 View Post
It Applies to educational institute
Thats good to know, because such institutions may be subject to state or nation-wide compliance rules.


Quote:
Originally Posted by NM04 View Post
there is no incident handling policy in place. How do I create one such policy.
Again that depends. See if there are state or nation-wide resources basically dictating what minimum IT, and therefore security, regulations should be adhered to. Often these resources will offer documentation, maybe even provide templates, or point to such libraries. If that's all not the case please give us a wee bit more information like size of the institution IT department and what type of education this is about (as in a University kind of differs from a Kindergarten which differs from a town hall room where people get them mad crocheting classes every forthnight ;-p).


Quote:
Originally Posted by NM04 View Post
I will explore those links and will reply later.
That's OK, nobody ever tries to reply earlier ;-p
 
Old 06-26-2015, 04:55 PM   #6
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
*Note the above is all OK if you for example would be an employee at some budding Institute of Technology. However if you are a student doing research for an assignment then now would be a good time to either 'fess up or spill way, way, way more details as we shouldn't spoonfeed you.
 
Old 07-01-2015, 12:16 AM   #7
NM04
Member
 
Registered: Jan 2011
Distribution: Back Track,Fedora,centos
Posts: 240

Original Poster
Rep: Reputation: 14
not a student

Last edited by NM04; 07-01-2015 at 01:52 AM.
 
Old 07-01-2015, 03:06 AM   #8
jamison20000e
Senior Member
 
Registered: Nov 2005
Location: ...uncanny valley... infinity\1975; (randomly born:) Milwaukee, WI, US( + travel,) Earth&Mars (I wish,) END BORDER$!◣◢┌∩┐ Fe26-E,e...
Distribution: any GPL that work on freest-HW; has been KDE, CLI, Novena-SBC but open.. http://goo.gl/NqgqJx &c ;-)
Posts: 4,888
Blog Entries: 2

Rep: Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567
We're all students. Tickles me how on average people whanting "authority" (like a cr\h\ack) often are less deserving...

Last edited by jamison20000e; 07-01-2015 at 03:42 AM.
 
Old 07-01-2015, 04:59 AM   #9
NM04
Member
 
Registered: Jan 2011
Distribution: Back Track,Fedora,centos
Posts: 240

Original Poster
Rep: Reputation: 14
I don't remember if I ever offended anyone in this community. Student in the manner asked by unSpawn.
 
Old 07-01-2015, 06:55 AM   #10
jamison20000e
Senior Member
 
Registered: Nov 2005
Location: ...uncanny valley... infinity\1975; (randomly born:) Milwaukee, WI, US( + travel,) Earth&Mars (I wish,) END BORDER$!◣◢┌∩┐ Fe26-E,e...
Distribution: any GPL that work on freest-HW; has been KDE, CLI, Novena-SBC but open.. http://goo.gl/NqgqJx &c ;-)
Posts: 4,888
Blog Entries: 2

Rep: Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567Reputation: 1567
Sorry not you, check your private messages.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: Consortium plans to protect cars from cyber attacks LXer Syndicated Linux News 0 10-02-2013 09:40 AM
LulzSec hacking group announces end to cyber attacks Jeebizz Linux - News 0 06-26-2011 09:11 AM
Targeted cyber attacks an 'epidemic' Jeebizz Linux - News 0 06-02-2011 01:35 PM
Cyber attacks and terrorism head threats facing UK Jeebizz Linux - News 0 10-18-2010 10:04 AM
[SOLVED] Mitigating damage caused by alphas wingman358 Linux - Newbie 8 06-24-2010 09:46 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:01 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration