Zum Hauptinhalt springen Zur Suche springen Zur Hauptnavigation springen
Beschreibung

Driven by the rise of public hacks and exploits, securing Linux server infrastructures requires robust defense mechanisms. To mitigate modern cyber threats, implementing modern tools like Lynis, ClamAV, and OpenVAS is critical to continuously auditing networks. Fortifying setups using UFW, nftables, and PSAD firewalls, alongside SSH hardening, reduces the attack surface. Additionally, analyzing complex malware through ELF analysis and YARA signatures ensures the integrity of enterprise, cloud, and personal environments.

This book bridges theory and real-world execution by providing a methodical roadmap for proactive defense. It delivers step-by-step instructions, diagrams, and examples of attack types to secure data and applications. IT professionals will learn to deploy resilient internal services, manage incident resolution using rsnapshot or Timeshift backups, and execute a thorough network security assessment.

By the end of this book, you will master practical hardening steps to turn vulnerabilities into impenetrable strength. You will possess realistic strategies to create bulletproof systems and enhance site resilience against external threats. Ultimately, you will be fully equipped to protect infrastructure and make your Linux environments completely unbreakable.

WHAT YOU WILL LEARN

● Configure firewalls with UFW and nftables rules.

● Audit systems using Lynis and OpenVAS scans.

● Detect rootkits/malware via ClamAV and YARA.

● Harden SSH, users, and kernel parameters​.

● Automate backups and integrity monitoring.

● Implement SELinux and AppArmor access controls.

WHO THIS BOOK IS FOR

This book is for system administrators, DevOps engineers, and cybersecurity analysts securing Linux servers in enterprise, cloud, or IoT environments. IT professionals seeking practical hardening for compliance, threat resilience, and more.

Driven by the rise of public hacks and exploits, securing Linux server infrastructures requires robust defense mechanisms. To mitigate modern cyber threats, implementing modern tools like Lynis, ClamAV, and OpenVAS is critical to continuously auditing networks. Fortifying setups using UFW, nftables, and PSAD firewalls, alongside SSH hardening, reduces the attack surface. Additionally, analyzing complex malware through ELF analysis and YARA signatures ensures the integrity of enterprise, cloud, and personal environments.

This book bridges theory and real-world execution by providing a methodical roadmap for proactive defense. It delivers step-by-step instructions, diagrams, and examples of attack types to secure data and applications. IT professionals will learn to deploy resilient internal services, manage incident resolution using rsnapshot or Timeshift backups, and execute a thorough network security assessment.

By the end of this book, you will master practical hardening steps to turn vulnerabilities into impenetrable strength. You will possess realistic strategies to create bulletproof systems and enhance site resilience against external threats. Ultimately, you will be fully equipped to protect infrastructure and make your Linux environments completely unbreakable.

WHAT YOU WILL LEARN

● Configure firewalls with UFW and nftables rules.

● Audit systems using Lynis and OpenVAS scans.

● Detect rootkits/malware via ClamAV and YARA.

● Harden SSH, users, and kernel parameters​.

● Automate backups and integrity monitoring.

● Implement SELinux and AppArmor access controls.

WHO THIS BOOK IS FOR

This book is for system administrators, DevOps engineers, and cybersecurity analysts securing Linux servers in enterprise, cloud, or IoT environments. IT professionals seeking practical hardening for compliance, threat resilience, and more.

Über den Autor
Michael Cichosz has been working in various IT security areas for over 15 years. Since 2008, hehas been a malware researcher for the open-source project ClamAV under Sourcefire. For localcompanies, Mr. Cichosz has been responsible for security testing and consulting activities.Currently, he is employed as a Linux engineer at Research Industrial Systems Engineering(RISE) in [...] parallel, he has been a freelance author for Cyber Protection Magazine and an author forBPB Publications.Previously, he worked for more than five years as a datacenter operations specialist inWolfsburg, focusing on installation, relocation, and support of server infrastructures. Michaelcombines his extensive experience with regular publications and author contributions in ITsecurity.
Details
Erscheinungsjahr: 2026
Fachbereich: Anwendungs-Software
Genre: Importe, Informatik
Rubrik: Naturwissenschaften & Technik
Medium: Taschenbuch
ISBN-13: 9789378549151
ISBN-10: 9378549152
Sprache: Englisch
Einband: Kartoniert / Broschiert
Autor: Cichosz, Michael
Hersteller: BPB Publications
Verantwortliche Person für die EU: Libri GmbH, Europaallee 1, D-36244 Bad Hersfeld, gpsr@libri.de
Maße: 235 x 191 x 16 mm
Von/Mit: Michael Cichosz
Erscheinungsdatum: 29.07.2026
Gewicht: 0,564 kg
Artikel-ID: 136322118