phunni Posted December 16, 2004 Report Share Posted December 16, 2004 I know it's not another linux distro - but it's still UNIX so... The servers at work have gone down 3 times in the last fortnight and the big wigs are getting annoyed (understandably). It's been discovered that the last two times it happened a core OS file disappeared just before everything went belly up. It has therefore occured to one or two people that we might be being hacked (probably some cheeky computer science student... ) and the question has arisen as to what might be a suitable intrusion detection system. Tripwire has been suggested - but apparently it's now commercial (although why that should matter...) so I'm trying to hunt down a potential solution. Any suggestions? Quote Link to comment Share on other sites More sharing options...
jlc Posted December 16, 2004 Report Share Posted December 16, 2004 (edited) CHKrootkit Give it a whirl You can find a package on sunfreeware.com too ftp://ftp.sunfreeware.com/pub/freeware/sp...-sparc-local.gz Edited December 16, 2004 by cybrjackle Quote Link to comment Share on other sites More sharing options...
jlc Posted December 16, 2004 Report Share Posted December 16, 2004 (edited) You can also check out snort from source or blastwave.org http://www.snort.org/ http://www.blastwave.org/packages.php/snort Edited December 16, 2004 by cybrjackle Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.