analyze security

systemd-analyze security    /usr/bin/systemd-analyze security strace -e trace=%file program   disable core dump nano /etc/security/limits.conf * hard core 0      # echo 'fs.suid_dumpable = 0' >> /etc/sysctl.conf   # sysctl -p   # echo 'ulimit -S -c 0 > /dev/null 2>&1' >> /etc/profile  default umask # nano /etc/profile umask 027 Usb device toggle lsusb   lsusb -t assign 'bus-port.Dev' number   echo '2-1.1' > /sys/bus/usb/drivers/usb/unbind   to unload usb module ls /lib/modules/`uname -r`/kernel/drivers/usb/storage  # lsmod | grep -i usb-storage modprobe -r uas modprobe -r usb-storage # modinfo usb-storage # lsscsi -H       vi /etc/modprobe.d/blacklist.conf blacklist usb-storage     sudo vi /etc/modprobe.d/fake_usb.conf Install usb - storage

bluetooth obex

  sudo   ln -fs /usr/lib/systemd/user/obex.service /usr/lib/systemd/user/dbus-org.bluez.obex.service # fix obex file transfer -   manually   /usr/lib/bluetooth/obexd