• 0 Posts
  • 28 Comments
Joined 1 year ago
cake
Cake day: September 13th, 2023

help-circle
  • psmgx@lemmy.worldtoSelfhosted@lemmy.worldClamAV setup
    link
    fedilink
    English
    arrow-up
    10
    ·
    6 days ago

    Antivirus as a thing is mostly dead, or has morphed into more aggressive endpoint protection. In that sense ClamAV is mostly to scan for known malware in things like mail servers. Make sure people aren’t sending malicious stuff, albeit mostly low hanging fruit.

    Nextcloud, wikis, or other similar aggregation sites are also a usecase, but again low hanging fruit.

    Set up a cron job and have it run periodically, like once an hour / day / week, whatever. Make sure you set up something that alerts you if/when it hits on something.



















  • Sounds like a concerted effort by a reasonably competent state actor. The +0800 timezone offset implies parts of Asia and is a small but crucial detail, esp given the commit times. In other words, China, Malaysia, Korea, etc. – somewhere in Asia.

    OTOH the author even concedes identity theft or smart attempts to discredit and point at Asia. Still, is on par for Chinese and NK actors.