LinuxЧÀÍÆ÷Çå¾²£ºÊ¹ÓÃÏÂÁî¼ì²éϵͳÎó²î
LinuxЧÀÍÆ÷Çå¾²£ºÊ¹ÓÃÏÂÁî¼ì²éϵͳÎó²î
¸ÅÊö£º
ÔÚµ±½ñµÄÊý×Ö»¯ÇéÐÎÖУ¬Ð§ÀÍÆ÷Çå¾²ÐÔÊÇÖÁ¹ØÖ÷ÒªµÄ¡£Õë¶ÔÒÑÖªÎó²î¾ÙÐÐʵʱµÄ¼ì²âºÍÐÞ¸´£¬Äܹ»ÓÐÓõر£»¤Ð§ÀÍÆ÷ÃâÊÜDZÔڵĹ¥»÷Íþв¡£±¾ÎĽ«ÏÈÈÝһЩ³£ÓõÄÏÂÁ¿ÉÓÃÓÚÔÚLinuxЧÀÍÆ÷Éϼì²éϵͳÎó²î£¬²¢ÌṩÏà¹ØµÄ´úÂëʾÀý¡£Í¨¹ý׼ȷʹÓÃÕâЩÏÂÁÄú½«Äܹ»ÔöǿЧÀÍÆ÷µÄÇå¾²ÐÔ¡£
¼ì²éϵͳ¸üУº
ÔÚ×îÏȾÙÐÐÎó²î¼ì²é֮ǰ£¬È·±£ÄúµÄϵͳÒѾ¸üÐÂÖÁ×îа汾¡£ÒÔÏÂÏÂÁî¿ÉÓÃÓÚ¼ì²éºÍ¸üÐÂÏÖÓÐÈí¼þ°ü£º
sudo apt-get update sudo apt-get upgrade
µÇ¼ºó¸´ÖÆ
ʹÓÃOpenVAS¾ÙÐÐÎó²îɨÃ裺
OpenVASÊÇÒ»¸öÊܽӴýµÄ¿ªÔ´Îó²îÆÀ¹Àϵͳ£¬¿ÉÒÔÓÃÓÚÖÜȫɨÃèЧÀÍÆ÷ÒÔ·¢Ã÷DZÔÚÎó²î¡£ÏÂÃæÊÇ×°ÖúÍʹÓÃOpenVASµÄʾÀýÏÂÁ
sudo apt-get install openvas sudo openvas-setup sudo openvas-start sudo openvas-check-setup sudo openvas-stop
µÇ¼ºó¸´ÖÆ
ʹÓÃNmapɨÃ迪·Å¶Ë¿Ú£º
NmapÊÇÒ»¿î¹¦Ð§Ç¿Ê¢µÄÍøÂçɨÃ蹤¾ß£¬¿ÉÓÃÓÚɨÃèЧÀÍÆ÷ÉϵĿª·Å¶Ë¿ÚÒÔ¼°¿ÉÄܱ£´æµÄÎó²î¡£ÒÔÏÂÊÇÒ»¸öʹÓÃNmapɨÃè³£¼û¶Ë¿ÚµÄʾÀýÏÂÁ
sudo nmap -sV -p 1-1000 <ЧÀÍÆ÷IP>
µÇ¼ºó¸´ÖÆ
ʹÓÃNessus¾ÙÐÐÎó²îɨÃ裺
NessusÊÇÒ»¿îÉÌÒµÎó²îÆÀ¹À¹¤¾ß£¬µ«ÌṩÁËÃâ·Ñ°æ±¾¹©Ð¡ÎÒ˽ÈËʹÓá£ÒÔÏÂÊÇʾÀýÏÂÁÓÃÓÚʹÓÃNessus¶ÔЧÀÍÆ÷¾ÙÐÐÎó²îɨÃ裺
sudo apt-get install nessus sudo /etc/init.d/nessusd start sudo nessuscli update <your Nessus activation code> sudo nessuscli scan --hosts=<ЧÀÍÆ÷IP> --all sudo /etc/init.d/nessusd stop
µÇ¼ºó¸´ÖÆ
ʹÓÃchkrootkit¼ì²éRootkit£º
RootkitÊÇÒ»ÖÖ¶ñÒâÈí¼þ£¬¿ÉÓÃÀ´Òþ²ØÈëÇÖÕ߶ÔЧÀÍÆ÷µÄ»á¼û¡£chkrootkitÊÇÒ»¿îÇáÁ¿¼¶µÄ¹¤¾ß£¬¿ÉÓÃÓÚ¼ì²âºÍ²éÕÒRootkitµÄºÛ¼£¡£ÒÔÏÂÊÇÒ»¸öʹÓÃchkrootkitµÄʾÀýÏÂÁ
sudo apt-get install chkrootkit sudo chkrootkit
µÇ¼ºó¸´ÖÆ
ʹÓÃrkhunter¼ì²éRootkit£º
rkhunterÊÇÁíÒ»¿î³£ÓõÄRootkit¼ì²â¹¤¾ß£¬¾ßÓÐÀàËƵĹ¦Ð§ºÍÓ÷¨¡£ÒÔÏÂÊÇÒ»¸öʹÓÃrkhunterµÄʾÀýÏÂÁ
sudo apt-get install rkhunter sudo rkhunter --check
µÇ¼ºó¸´ÖÆ
ÈÕÖ¾ÆÊÎö£º
ЧÀÍÆ÷ÈÕÖ¾ÊÇʶ±ðDZÔÚ¹¥»÷µÄÖ÷ÒªÐÅϢȪԴ¡£Í¨Ì«¹ýÎöЧÀÍÆ÷ÈÕÖ¾Îļþ£¬Äú¿ÉÒÔ·¢Ã÷Òì³£µÄµÇ¼ʵÑé¡¢¾Ü¾øµÄ»á¼ûÒÔ¼°ÆäËû¿ÉÄܵĹ¥»÷¼£Ïó¡£ÒÔÏÂÊÇÒ»¸öʹÓÃgrepÏÂÁîÆÊÎöÈÕÖ¾µÄʾÀýÏÂÁ
sudo grep "Failed password" /var/log/auth.log sudo grep "sshd" /var/log/auth.log
µÇ¼ºó¸´ÖÆ
½áÂÛ£º
ͨ¹ýʹÓÃÉÏÊöÏÂÁÔÚLinuxЧÀÍÆ÷Éϼì²éºÍÐÞ¸´Îó²î½«±äµÃÔ½·¢ÈÝÒס£¿ÉÊÇÇë×¢ÖØ£¬ÕâЩÏÂÁî½öÄÜ×÷ΪÆðÔ´µÄÎó²îɨÃèºÍ¼ì²â¹¤¾ß£¬²»¿ÉÌæ»»ÆäËû¸ß¼¶µÄÇå¾²²½·¥¡£ÔÚ±£»¤Ð§ÀÍÆ÷ÃâÊÜDZÔڵĹ¥»÷Íþвʱ£¬ÇëʼÖÕ¼á³ÖСÐÄ£¬²¢Ë¼Á¿Ê¹ÓÃÆäËûÇå¾²¹¤¾ßºÍ×î¼Ñʵ¼ùÀ´ÔöǿЧÀÍÆ÷µÄÇå¾²ÐÔ¡£
ÒÔÉϾÍÊÇLinuxЧÀÍÆ÷Çå¾²£ºÊ¹ÓÃÏÂÁî¼ì²éϵͳÎó²îµÄÏêϸÄÚÈÝ£¬¸ü¶àÇë¹Ø×¢±¾ÍøÄÚÆäËüÏà¹ØÎÄÕ£¡