How do you find out if you are being hacked or are being hacked? Is Hacking something you can monitor and control? Every says do this to prevent hacking and do that (firewall and antivirus) but know one actually tell how hackers get through and how do they stay there?
Can some one please explain what are the tell tail signs of hacking, and what are the steps to monitor and detect hacking. I know preventing is better, but unless you know the methods of a hacker you cannot prevent it.
Can some Security guru guide this new bee to look out for hackers and catch them in the act :) (OK I got a bit carried away) But I want to know how hacking works and how to detect it. I know how to prevent it (Firewall, closed ports, event logs, stealth port, etc.....)
Thank you
http://www.snort.org/
http://www.sans.org/resources/idfaq/