Running services, network usage, memory usage, bandwidth, disk I/O, successful logins, whether the thing is even alive, etc…
So far my only method has been “hope and pray”.

      • ryannathans@aussie.zone
        link
        fedilink
        English
        arrow-up
        2
        ·
        12 hours ago

        You’d need to be running kerberised NFS in the kernel, give the attacker access to your NFS server, and have a valid kerberos login

        I don’t know anyone sharing NFS access let alone opening it up on the open internet