Jump to content

I am getting a new laptop and have decided to do a total cyber security audit of my pc, network, and online accounts. I am looking to maximize security and am looking to make a comprehensive checklist. Feel free to recommend anything you feel will help. Some things I have thought of include:

 

  • Switch to a password manager/Change all passwords
  • make sure all updates are in place (anti virus, anti malware, windows, etc.)
  • enable bitlocker full drive encryption
  • secure the uefi/bios (I know it can be erased by removing the cmos battery, but its a step)
  • encrypt everything
  • backups 
  • switch to standard user account, secure administrator account
  • Edit UAC (user account control) settings 
  • Enable 2FA (two factor authentication) where available. 
  • Start using a vpn (any recomendations?)
  • maybe switch to tor
  • lock down unused ports

I am running windows 10 pro and I am pretty technically inclined, however feel free to add any recommendations. My point is to maximize security even if the user experience could be slightly effected. I want to lock down my pc and network as best I can. 

Link to comment
https://linustechtips.com/topic/814317-cyber-security-audit/
Share on other sites

Link to post
Share on other sites

  • Use SELinux

Current LTT F@H Rank: 69    Score: 3,457,572,143    Stats

Yes, I have 9 monitors.

My main PC:

OS: Windows 11

CPU: Ryzen 9 3900X w/PBO on

Cooler: Noctua NH-D15

Mobo: Asus X470-F Gaming

RAM: 64GB G-Skill Ripjaws V @ 3200MHz

GPU: RTX 4090 Founders Edition, Radeon Pro WX 5100

PSU: Corsair RM1000e

SSDs: Samsung 970 evo plus 1TB NVME, 2x Samsung 870 evo 2TB, Samsung 860 evo 1TB, Samsung 970 evo 500GB NVME

Case: Fractal Design Define R5 Black w/ Tempered Glass Side Panel Upgrade

Monitors: 9 Monitors: Alienware AW3423DWF 3440x1440@165Hz, Acer H236HLbid 1080p@77Hz, HP D7z72AA 1080p@60Hz, Dell Inspiron 24 3459 1080p@60Hz(used only as display), Dell U2724D 1440p@120Hz, ASUS VP228 1080p@60Hz, 2x HP ZR2440W 1200p@60Hz

 

unRAID server (Plex, Backups, NAS, Duplicati, game servers):

OS: unRAID 6.12.4

CPU: Ryzen R7 2700x @ Stock

Cooler: Noctua NH-U9S

Mobo: Asus Prime X470-Pro

RAM: 16GB G-Skill Ripjaws V + 16GB Hyperx Fury Black @ stock

PSU: EVGA G3 850W

SSD: Samsung 980 Pro 1TB NVME, Samsung 970 evo plus 1TB NVME

HDDs: 4x HGST Dekstar NAS 4TB @ 7200RPM (3 data, 1 parity) + (3x Seagate Ironwolf NAS 8TB + 2x Toshiba N300 NAS 8TB in ZFS)

Case: Fractal Define 7 XL

Other: Added 3x Noctua NF-F12 intake, 2x Noctua NF-A8 exhaust, Inatek 5 port USB 3.0 expansion card with usb 3.0 front panel header

 

Link to comment
https://linustechtips.com/topic/814317-cyber-security-audit/#findComment-10216930
Share on other sites

Link to post
Share on other sites

If you do not need Silverlight or flash, then uninstall them. Monitor and block unnecessary traffic.

Edit: Consider running your browser or other applications in a container or virtualize them.

Edit 2: Also disable SMB1.0 (It will automatically be disabled in the fall update) 

Link to comment
https://linustechtips.com/topic/814317-cyber-security-audit/#findComment-10216936
Share on other sites

Link to post
Share on other sites

tor is privacy not security.

If you want secure browsing then do not save passwords for your modem's web access & change your modem's default password.

Use a different browser for web surfing and logging into user accounts or use firefox profiles

             ☼

ψ ︿_____︿_ψ_   

Link to comment
https://linustechtips.com/topic/814317-cyber-security-audit/#findComment-10216991
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×