<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>HardStacked blog</title>
  <subtitle>Linux hardening, measured and reversible</subtitle>
  <link href="https://hardstacked.net/feed.xml" rel="self"/>
  <link href="https://hardstacked.net/blog/"/>
  <id>https://hardstacked.net/blog/</id>
  <updated>2026-07-20T12:00:00Z</updated>
  <author><name>HardStacked</name></author>
  <entry>
    <title>Five green lights that lied: anatomy of a routine Linux checkup</title>
    <link href="https://hardstacked.net/blog/green-lights"/>
    <id>https://hardstacked.net/blog/green-lights</id>
    <updated>2026-07-20T12:00:00Z</updated>
    <summary>A routine checkup on a hardened Linux box ended all green, but five reassuring signals were traps on the way: the empty grep, the free-memory panic, the service that was never down, the fresh file with a stale number, and the score that says nothing about who rattled the handle.</summary>
  </entry>
  <entry>
    <title>Microsoft scores an F, my blog scores an A: what a security grade really measures</title>
    <link href="https://hardstacked.net/blog/security-badge"/>
    <id>https://hardstacked.net/blog/security-badge</id>
    <updated>2026-07-20T12:00:00Z</updated>
    <summary>We scanned microsoft.com, facebook.com and our own static blog on securityheaders.com: an F, an A and an A. The reasons behind each grade say more about incentives than about competence.</summary>
  </entry>
  <entry>
    <title>Locked out of your own VPS: the 5 classic SSH lock-outs</title>
    <link href="https://hardstacked.net/blog/ssh-lockout"/>
    <id>https://hardstacked.net/blog/ssh-lockout</id>
    <updated>2026-07-19T12:00:00Z</updated>
    <summary>Five mistakes lock people out of their own servers: password login off without a tested key, the firewall before the allow rule, fail2ban banning you, the port change systemd ignores, and the typo that explodes weeks later.</summary>
  </entry>
  <entry>
    <title>Raising your Lynis hardening index: what actually moves the score</title>
    <link href="https://hardstacked.net/blog/lynis-score"/>
    <id>https://hardstacked.net/blog/lynis-score</id>
    <updated>2026-07-19T12:00:00Z</updated>
    <summary>We measured a Lynis climb fix by fix: the 25-point penalty apt upgrade leaves behind, why installing security tools earns nothing, and four rules for an honest score.</summary>
  </entry>
  <entry>
    <title>1234 login attempts in 41 hours: who really knocks on an exposed SSH port</title>
    <link href="https://hardstacked.net/blog/invalid-user"/>
    <id>https://hardstacked.net/blog/invalid-user</id>
    <updated>2026-07-19T12:00:00Z</updated>
    <summary>We counted every SSH probe against a quiet test box: 1234 attempts on accounts that do not exist, 132 usernames, 93 IPs, activity around the clock. What the logs say about who is knocking.</summary>
  </entry>
</feed>
