This article by Andrew Kaufman talks about shortsighted thinking that is prevalent in many companies that do not put in place effective security measures.
Have you ever suspected or been notified that your Linux system is under attack? How do you determine whether your system has been compromised? This
document is intended to explain how an administrator can implement basic security incident investigation techniques.
An interview with Brian Gemberling, creator of the PullthePlug.com project. Brian invites everyone to find security vulnerabilities on his open systems.
This document takes you through the basics of intrusion detection, the steps necessary to configure a host to run the snort network intrusion detection system, testing its operation, and alerting you to possible intrusion events.