Advanced Plus Security Victor M Fedora 44 KDE Configuration

Last updated
Jun 6, 2026
How it's used?
For work or educational use
Operating system
Linux
On-device encryption
Other full-disk drive encryption software
Log-in security
    • Hardware security key
    • Basic account password (insecure)
Security updates
Allow security updates
Update channels
Allow stable updates only
User Access Control
N/A - Linux / Mac / Other operating system
Smart App Control
N/A - Linux / Mac / Other operating system
Network firewall
Enabled
Real-time security
SELinux daemon & browser & user profiles
Systemd hardening
Firewall-cmd
Firewall security
Built-in Firewall for Mac/Linux
About custom security
SELinux daemon & browser & user profiles
Systemd hardening
Blacklisted unused network protocols
Firewall-cmd set to zone=drop
Seperate user_u confined account for daily use
Procedural security control forbids admin acc browser use.
Sudo command and logins require Yubikey
Browser policy foribds extensions
Browser policy disables javascript jit
Periodic malware scanners
clamav
Malware sample testing
I do not participate in malware testing
Environment for malware testing
n/a
Browser(s) and extensions
n/a
Secure DNS
quad9
Desktop VPN
ProtonVPN
Password manager
keepass
File and Photo backup
file copy
Subscriptions
    • Google One Premium 2TB
System recovery
Clonezilla
Risk factors
    • Browsing to popular websites
    • Working from home
    • Making audio/video calls
    • Buying from online stores, entering banks card details
Computer specs
Dell Latitude
What I'm looking for?

Looking for maximum feedback.

So far I have made 27 offline images, each of them accumulating some more security enhancements. Have been keeping notes of all hardening. And lately fed this secure configuration notes to Anthropic Claude (because Mythos made it famous for cybersecurity) to critique the security and suggest compensating controls Resulted in several more pointers. Claude also uses a more serious tone ( is it because I am talking about security ) which is interesting.
 
Last edited:
  • Applause
Reactions: Sorrento
I have switched from Firefox to Brave because of Chromium's stronger sandbox reputation. But Claude said it also has the highest concentration of hackers targeting it, because, well it is Chrome with it's massive user base. But I know my red team was targeting Firefox. So this is a change of scenery for them. And I should have done the right things like restricting extensions to none via policy, and disabling the much hacked javascript jit. And Brave is said to follow Chrome updates very closely, unlike Chromium. Leaping from the pan into the fire.
 
Last edited:
  • Like
Reactions: lokamoka820