October 2022
Intermediate to advanced
500 pages
19h 57m
English
Although it’s not necessary to run a full Open Source Security Testing Methodology Manual (OSSTMM) audit every day, it can be helpful to audit various activities on a regular basis. For example, you might regularly run password-cracking tools to verify how easy it would be gain access to the system if an attacker were able to use a brute-force attack. If such tools discover user passwords in a few minutes, those passwords are most likely too simple and their associated accounts subject to easy access by attackers.
You should monitor the following areas of user behavior on a regular basis:
Physical access—If users are limited by workstation, check appropriate logs. Are those users the ...