AlpineWeb Design Home
Is there a domain name available for you?
Search: For:   ~ Advanced Search
    Hosting > Virtual Private Servers > Administration > Security >

Remove user and world permission from compilers

The following will remove user and world permission from c, c++, and related compilers. These tools are often used by hackers to set up and install root kits. Please note that wget and lynx are not compilers, but are often used to fetch the root kits which are then compiled.
Log into each server as root.

Then copy and paste the following to your command line to execute (please double check directory locations as applicable):
chmod 700 /usr/local/bin/wget
chmod 700 /usr/local/bin/lynx
chmod 700 /usr/bin/links
chmod 700 /usr/local/bin/bcc
chmod 700 /usr/bin/byacc
chmod 700 /usr/bin/cc
chmod 700 /usr/bin/gcc
chmod 700 /usr/bin/perlcc
chmod 700 /usr/bin/yacc
chmod 700 /usr/local/bin/*ncftp*
chmod 700 /usr/bin/fetch
IMPORTANT NOTE: This document is based on FreeBSD. The concepts should be similar across operating systems, but the commands will very likely be different. Also, never assume the directory structures exist in your system as written in the document. Never blindly follow security instructions -- read, review, compare, apply as it fits your system.


image


image
Authorized viaVerio Reseller         Authorize.net         Miva Certified Business Partner