3 ms·
you're a fool if you think Linux systems are not commonly affected. most compliance requirements do require you to have av on Linux too. as someone in the secu
by Beached 6y ago
you're a fool if you think Linux systems are not commonly affected. most compliance requirements do require you to have av on Linux too.
as someone in the security industry, my experience is that Linux servers are clearly more frequently affected than osx, and there are very few people left who would say osx doesn't have malware still.
just because a large compiled library of code doesn't exist and isn't commonly passed around doesn't mean it's malware free or even malware light.
compiled sttaic malware isn't common because it doesn't have to. rce is done on Linux systems an overwhelming majority of the time using native applications in the way they are meant to be used, just by the wrong people. (the attacker). the lack of quality security tool for the Linux environment is THE biggest concern mature security teams struggle with.
Linux is the most common internet facing os platform, and I'm here to tell you, if it's internet facing, it have threat actors targeting AND affecting it. the only reason Linux hasn't surpassed windows in how frequently is it the victim of malware/attacks is because of workstations.
- greedo 6y agoNot a fool, just someone with over 20 years experience, who has gone through multiple PCI audits and never once met an assessor who thought it was required. And if you're managing your servers properly, A/V is unnecessary; first there are few viruses and malware that affect *nix, second, if you can't control code deployment on your systems, you're in the wrong business. None of our systems providing Internet services are directly connected; everything is proxied/firewalled etc. If you're expecting ANY of the A/V solutions out there to protect your systems, whether they're Windows/Linux/MacOS, you're going to be sadly disappointed when you get rooted.