1 |
Am Samstag, 18. Februar 2006 01:48 schrieb mir Christian Limberg: |
2 |
> maybe you can emerge tools like chrootkit or rkhunter for checking |
3 |
> your box for intruders. Clearly, it wouldn't help, if someone has |
4 |
> 'bruteforced' your password, but if an intruder came throu a |
5 |
> vunerable application and installed a rootkit or something like that, |
6 |
> the tools might help you. |
7 |
|
8 |
No, you can't detect with those tools if your system is *not* |
9 |
compromised. |
10 |
|
11 |
> Furthermore it is highly recommended, that your root-password |
12 |
> contains of a non-dictionay alpha-numeric (at least capitals, lower |
13 |
> case letters and numbers) 8 character long phrase. |
14 |
|
15 |
And it it highly recommended to set up a new system from scratch. |
16 |
Everything else is Russian roulette. |
17 |
|
18 |
Regards |
19 |
Oli |
20 |
-- |
21 |
gentoo-security@g.o mailing list |