Learn about a breach
Attackers asking for a ransom
Slide 5
Learn about a breach
Cloud provider's bill
Slide 6
Learn about a breach
Yourself after the fact
Slide 7
Learn about a breach
Yourself but unsure about harm
Slide 8
Learn about a breach
Yourself & you can prove no harm
Slide 9
Slide 10
No silver bullet
Slide 11
uditd
https://github.com/linux-audit
Slide 12
"auditd is the userspace component to the Linux Auditing System. It's responsible for writing audit records to the disk. Viewing the logs is done with the ausearch or aureport utilities."
Slide 13
Monitor File and network access System calls Commands run by a user Security events