TheOneWithTheHair@lemmy.world to Technology@lemmy.worldEnglish · 10 months agoReddit: IP Address Disclosure Puts User Anonymity At Risk * TorrentFreaktorrentfreak.comexternal-linkmessage-square44fedilinkarrow-up1310arrow-down13cross-posted to: reddit@lemmy.mltechnology@lemmit.online
arrow-up1307arrow-down1external-linkReddit: IP Address Disclosure Puts User Anonymity At Risk * TorrentFreaktorrentfreak.comTheOneWithTheHair@lemmy.world to Technology@lemmy.worldEnglish · 10 months agomessage-square44fedilinkcross-posted to: reddit@lemmy.mltechnology@lemmit.online
minus-squarecmnybo@discuss.tchncs.delinkfedilinkEnglisharrow-up10arrow-down1·10 months agoJust store what logs you need on a ram drive. The logs will be gone the instant the server shuts down and there is no way to recover them.
minus-squarenevemsenki@lemmy.worldlinkfedilinkEnglisharrow-up8·10 months agoDownsides include : if any intrusion happens on the server, red team just needs to reboot it to wipe evidence.
minus-squarePerhyte@lemmy.worldlinkfedilinkEnglisharrow-up5·edit-210 months agoIf they have the root access typically needed to reboot a server1 they could also just wipe the logs without rebooting. 1: GUIs typically have a way to reboot without such privileges, but those are typically not installed on machines just used as servers.
Just store what logs you need on a ram drive. The logs will be gone the instant the server shuts down and there is no way to recover them.
Downsides include : if any intrusion happens on the server, red team just needs to reboot it to wipe evidence.
If they have the root access typically needed to reboot a server1 they could also just wipe the logs without rebooting.
1: GUIs typically have a way to reboot without such privileges, but those are typically not installed on machines just used as servers.