I would love to see some auditing tools added. Here are some examples of things which I feel would be useful:

  1. Unknown SSH keys added to authorized_keys
  2. Unknown cronjobs added
  3. Unknown processes running under a user account
  4. New/unknown files added to user home folder (especially .local/bin)
  5. Scanning .bashrc, .bash_aliases, .profile, .bash_history for malware looking code (wget, base64, etc.)
  6. Hardened file/folder permissions

Security auditing tools

1 total vote
  • Mike moved item to project Servers

    3 hours ago
  • Mike created the item

    3 hours ago
Quick Actions
Activity
View recent activity and updates
Use arrow keys to navigate