Advanced Security R3j3ct's Home Laptop Config 2023

Last updated
Nov 16, 2023
How it's used?
For home and private use
PC OS
Other operating system
Other PC OS
Linux Mint 21.2 x86_64
On-device encryption
N/A
Log-in security
    • Basic account password (insecure)
Security updates
Allow security updates
Update channels
Allow stable updates only
Windows UAC
N/A (Mac/Linux)
Windows 11 SAC
N/A for Mac/Linux/Windows 10
Network firewall
N/A
About WiFi router
Apartment building has WiFi for tenants
Real-time security
None
Firewall security
Built-in Firewall for Mac/Linux
About custom security
UFW Firewall
- Incoming set to reject
- Outgoing set to allow
Apparmor
Firejail - mainly for browser
Periodic malware scanners
ClamAV with Clamtk - cause i work with windows files
- Added signatures from, Malware expert, Linux Malware Detect, and Securiteinfo
Rkhunter & Chkrootkit - still up in the air on these two
Malware sample testing
I do not participate in malware testing
Environment for malware testing
N/A
Browser(s) and extensions
Firefox - Ublock Origin & Privacy Badger
Brave - Ublock Origin & Privacy Badger
- Both set to not save and clear when closed
Secure DNS
N/A
Desktop VPN
Torguard - With killswitch on
Password manager
KeePassXC
Maintenance tools
Ubuntu Cleaner
File and Photo backup
Backup regularly to external drive
System recovery
Timeshift
Risk factors
    • Buying from online stores, entering banks card details
    • Logging into my bank account
    • Downloading software and files from reputable sites
    • Streaming audio/video content from trusted sites or paid subscriptions
    • Streaming audio/video content from shady sites
Computer specs
Lenovo ThinkPad T430
CPU: Intel i5-2540M (4) @ 3.300GHz
GPU: Intel 2nd Generation
Memory: 12 gig
HDD Still original will be adding SSD
Notable changes
Kernel: 6.5.11-4-liquorix-amd64
mese/vulkan drivers

Ubuntu was a mess, tried fedora & didn't like it
What I'm looking for?

Looking for medium feedback.

R3j3ct

Level 1
Thread author
May 12, 2023
16
all i got for a update, switched from ubuntu to linux mint, and i find it less of a pain in the ass then ubuntu and the mess they had a few months ago with the updates and blah...
 

Ultimate Vision

Level 9
Sep 3, 2023
423
Good to see you are using timeshift, excellent program. With apparmor are you running standard security profile, or is yours custom, have you added profile extras, if so what issues did you run into that needed corrected via applications.

chrootkit vs rkhunter.
chrootkit only scans for rootkits on the local host whereas rkhunter verifies consistency of a configuration, symlinks in file system, open TCP sockets on a localhost ect. I personally use rkhunter.

There is also a tool called Lynis you can look into, a paid and free version. It is a system auditing tool that can help you learn of CVE's and harden your system.
 

R3j3ct

Level 1
Thread author
May 12, 2023
16
Good to see you are using timeshift, excellent program. With apparmor are you running standard security profile, or is yours custom, have you added profile extras, if so what issues did you run into that needed corrected via applications.
I am just running standard security profiles, i didn't want to try any custom or profile extras mainly cause i'm lazy and don't want to fix/deal with any experimental profiles.

There is also a tool called Lynis you can look into, a paid and free version. It is a system auditing tool that can help you learn of CVE's and harden your system.
yea, i forgot to run Lynis, might get to that today!
 
  • Like
Reactions: Moonhorse

Ultimate Vision

Level 9
Sep 3, 2023
423
I am just running standard security profiles, i didn't want to try any custom or profile extras mainly cause i'm lazy and don't want to fix/deal with any experimental profiles.


yea, i forgot to run Lynis, might get to that today!
Not much point in running Linus if you do not wish to finagle and mess with the system, as it requires quite a bit to "harden" the system, Linus just shows you where it needs to be done.
 

R3j3ct

Level 1
Thread author
May 12, 2023
16
lmao, i hear you! but i ran lynis to just see! lynis gave me a score of 70 which i think i just fine for what i use this for...never the less, being new to linux full-time that is, i always want and accept knowledge! i was at 60+ before i ran lynis, i added fail2ban & debsum i think it was, checks hashes of software i think...is there anything i should be paying attention to and am not doing it already?
 
  • Like
Reactions: Ultimate Vision

Ultimate Vision

Level 9
Sep 3, 2023
423
lmao, i hear you! but i ran lynis to just see! lynis gave me a score of 70 which i think i just fine for what i use this for...never the less, being new to linux full-time that is, i always want and accept knowledge! i was at 60+ before i ran lynis, i added fail2ban & debsum i think it was, checks hashes of software i think...is there anything i should be paying attention to and am not doing it already?
I would state you are more than likely fine other than watching those URLs since you do your banking and buying online.
 
  • Like
Reactions: R3j3ct

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top