Hi everyone,
Yesterday I was thinking about what integrated or third-party tools (free or otherwise) we could use to investigate whether our machine has been infected by a backdoor, malware, etc.
My reasoning doesn't start from the idea that it could be an infection resulting from the user executing something, but rather from a deeper level, taking inspiration from the past case of the XZ Utils backdoor, i.e., a flaw in the supply chain.
If something similar were to happen again, what could help us analyze the system?
I don't know of any free "home version" antimalware, except for Clamav, which isn't that great compared to other vendors.
Other tools? AIDE?
One tool that could be very useful is Thor Lite, but there's no version for FreeBSD.
Thanks everyone.
Yesterday I was thinking about what integrated or third-party tools (free or otherwise) we could use to investigate whether our machine has been infected by a backdoor, malware, etc.
My reasoning doesn't start from the idea that it could be an infection resulting from the user executing something, but rather from a deeper level, taking inspiration from the past case of the XZ Utils backdoor, i.e., a flaw in the supply chain.
If something similar were to happen again, what could help us analyze the system?
I don't know of any free "home version" antimalware, except for Clamav, which isn't that great compared to other vendors.
Other tools? AIDE?
One tool that could be very useful is Thor Lite, but there's no version for FreeBSD.
Thanks everyone.