Linux入侵排查常用方法
Linux入侵排查常用方法
November 22,2020 01:35:25

Linux入侵排查常用方法#入侵排查思路-1.账号检查#查看用户信息文件 /etc/passwd查看影子文件 /etc/shadowwho命令w命令其他命令**awk -F: '$3==0{print $1}' /etc/passwdawk '/\$1|\$6/{print $1}' /etc/shadowmore /etc/sudoers | grep -v "^#|^$" | grep "AL...

热度 388℃
4 0
Sitemap