LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices


Reply
  Search this Thread
Old 05-01-2024, 12:15 PM   #1
LinspireDistro
LQ Newbie
 
Registered: May 2024
Posts: 1

Rep: Reputation: 0
Is it safe to not have an Anti-Virus with a Linux distro?


Hello I was wondering if it is safe not to have an Anti-virus if I install a Linux Distro like Mint Distro?
 
Old 05-01-2024, 12:18 PM   #2
wpeckham
LQ Guru
 
Registered: Apr 2010
Location: Continental USA
Distribution: Debian, Ubuntu, RedHat, DSL, Puppy, CentOS, Knoppix, Mint-DE, Sparky, VSIDO, tinycore, Q4OS, Manjaro
Posts: 5,695

Rep: Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716
Quote:
Originally Posted by LinspireDistro View Post
Hello I was wondering if it is safe not to have an Anti-virus if I install a Linux Distro like Mint Distro?
Mint has ClamAV available. IS it safe without AV? Well, that depends upon what you are DOING with it! I like having AV, but I am a paranoid old SYSADMIN who has seen incursions and infections before. I also like having rootkit detection, because not all malware in a virus!


What will you be using this Mint node for?
 
Old 05-01-2024, 12:27 PM   #3
hazel
LQ Guru
 
Registered: Mar 2016
Location: Harrow, UK
Distribution: LFS, AntiX, Slackware
Posts: 7,638
Blog Entries: 19

Rep: Reputation: 4469Reputation: 4469Reputation: 4469Reputation: 4469Reputation: 4469Reputation: 4469Reputation: 4469Reputation: 4469Reputation: 4469Reputation: 4469Reputation: 4469
If you just have a desktop machine and not a server, I don't think you need an antivirus. There are not many Linux viruses out there in the wild.

However Linux can act as a carrier for Windows viruses, a kind of "Typhoid Mary". So if you share files with Windows users, you might want to install ClamAV.
 
Old 05-01-2024, 01:14 PM   #4
wpeckham
LQ Guru
 
Registered: Apr 2010
Location: Continental USA
Distribution: Debian, Ubuntu, RedHat, DSL, Puppy, CentOS, Knoppix, Mint-DE, Sparky, VSIDO, tinycore, Q4OS, Manjaro
Posts: 5,695

Rep: Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716
One BIG difference between Linux and Windows is that scrubbing your drive and reinstalling Linux is free and fast. (Just have a backup of your home folder. No, I mean really: plan to make a refresh backup every week, and rotate three or four media so if two are corrupt you can go back and get a good copy!)

Reload Linux, restore your settings, restore your home backup, and you are back in business!

No Windows support fee, not re-registration or registration limits: gotta love it.

Not a protection, but in the worst case a great way to get back in business quick.
 
Old 05-01-2024, 01:20 PM   #5
fatmac
LQ Guru
 
Registered: Sep 2011
Location: Upper Hale, Surrey/Hants Border, UK
Distribution: Mainly Devuan, antiX, & Void, with Tiny Core, Fatdog, & BSD thrown in.
Posts: 5,507

Rep: Reputation: Disabled
Been using Linux as my desktop PC since 1999, no AV - no, not needed, in my opinion; just back up your personal data regularly, as you should with any O/S.
 
1 members found this post helpful.
Old 05-01-2024, 01:41 PM   #6
business_kid
LQ Guru
 
Registered: Jan 2006
Location: Ireland
Distribution: Slackware, Slarm64 & Android
Posts: 16,385

Rep: Reputation: 2336Reputation: 2336Reputation: 2336Reputation: 2336Reputation: 2336Reputation: 2336Reputation: 2336Reputation: 2336Reputation: 2336Reputation: 2336Reputation: 2336
Yes, for a general use case. If you're head of the Secret Service or in a position where State backed hackers are going to spend time taking you down, that's a different ball game. Mind you, when they say there's been a vulnerability uncovered & patched, update. Things exploiting the Log4J vulnerability were hacking long after the exploit had been patched, and devs and others were jumping up and down yelling at folks for months to update. But the lazy & inexperienced didn't bother, and suffered the penalty.
 
Old 05-01-2024, 01:48 PM   #7
remmilou
Member
 
Registered: Mar 2010
Location: Amsterdam
Distribution: MX Linux (21)/ XFCE
Posts: 212

Rep: Reputation: 69
Question for the guru's here...
Is (clam)av usefull when using wine?
- Can a wine environment (bottle) get infected?
- Will clamav check for windows virusses in wine?
 
Old 05-01-2024, 01:56 PM   #8
rclark
Member
 
Registered: Jul 2008
Location: Montana USA
Distribution: KUbuntu, Fedora (KDE), PI OS
Posts: 492

Rep: Reputation: 182Reputation: 182
Quote:
{I was wondering if it is safe not to have an Anti-virus} Yes, for a general use case.
+1 . Agree.

Last edited by rclark; 05-01-2024 at 01:57 PM.
 
Old 05-01-2024, 03:27 PM   #9
jefro
Moderator
 
Registered: Mar 2008
Posts: 22,008

Rep: Reputation: 3629Reputation: 3629Reputation: 3629Reputation: 3629Reputation: 3629Reputation: 3629Reputation: 3629Reputation: 3629Reputation: 3629Reputation: 3629Reputation: 3629
Security is a set of tools, settings and practices. The more you use the more likely you are safer.
 
Old 05-01-2024, 06:55 PM   #10
wpeckham
LQ Guru
 
Registered: Apr 2010
Location: Continental USA
Distribution: Debian, Ubuntu, RedHat, DSL, Puppy, CentOS, Knoppix, Mint-DE, Sparky, VSIDO, tinycore, Q4OS, Manjaro
Posts: 5,695

Rep: Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716
I worked with a really smart CPA once, who was managing a small company out in Utah.
He mostly took my advice, but was sure his risks were low because his company would be too small to show on anyone's radar. One night he "simplified" his password on the web server to make it easier to work form home. By the time he got home his web server was OWNED. Dictionary attack cracked his password. The script kiddie that got in infected it with more malware than I could count, so I just rebuilt the box and reminded him of the security standards we had discussed. They only reason they did not take over his web pages and get data was because it was all protected and in unexpected/non-standard places. He got lucky!

When I run a server I log access attempts, and you would be SHOCKED at how many probes I intercept. Yes, even attempting my home network. NOTHING is off their radar!

Just take steps to may yourself look a lot less attractive than your neighbor. No one is going to spend extra hours trying to break in if they are pretty darn sure the work will bring them no payday. BUT: don't make it too easy!

The security settings on your edge device are your first protection.
Second is software on your internal nodes (Firewall, AV, etc.).
Third is just making it a habit to not do dumb things (like simplifying your passwords!).

Not opening your node to export services (using it in client only mode with no open ports) is pretty safe. There is no sure thing.

Last edited by wpeckham; 05-01-2024 at 06:58 PM.
 
Old 05-01-2024, 08:05 PM   #11
frankbell
LQ Guru
 
Registered: Jan 2006
Location: Virginia, USA
Distribution: Slackware, Ubuntu MATE, Mageia, and whatever VMs I happen to be playing with
Posts: 19,358
Blog Entries: 28

Rep: Reputation: 6148Reputation: 6148Reputation: 6148Reputation: 6148Reputation: 6148Reputation: 6148Reputation: 6148Reputation: 6148Reputation: 6148Reputation: 6148Reputation: 6148
It's certainly a lot safer than running Windows without an AV, especially since dodgy links and phishing seems to have become greater (more immediate?) dangers than traditional viruses. But . . .

I would say it's like leaving your car unlocked.

You may leave it unlocked 10,000 times without incident, but there's always the 10,001.

Last edited by frankbell; 05-01-2024 at 08:08 PM.
 
Old 05-01-2024, 08:44 PM   #12
rkelsen
Senior Member
 
Registered: Sep 2004
Distribution: slackware
Posts: 4,463
Blog Entries: 7

Rep: Reputation: 2561Reputation: 2561Reputation: 2561Reputation: 2561Reputation: 2561Reputation: 2561Reputation: 2561Reputation: 2561Reputation: 2561Reputation: 2561Reputation: 2561
Quote:
Originally Posted by wpeckham View Post
When I run a server I log access attempts, and you would be SHOCKED at how many probes I intercept. Yes, even attempting my home network. NOTHING is off their radar!
That is true, but OpenVPN on a non-standard UDP port with certificate based authentication seems to come quite close.

I also log access attempts. Up until December last year, I was running OpenVPN on port 1194 and would usually get hit 6 to 8 times per day. Sometimes more, sometimes less, but there was never a day with no hits. In December, I change the config to use a non-standard UDP port... Haven't seen a single hit since. Not a one.

The experience has been such that I'd advise anyone and everyone to do the same whenever they have to expose a machine to the internet for whatever reason. You can call me crazy, but I don't even use SSH across the open internet without going through a VPN tunnel.

I've not used WireGuard, but I'm led to believe that the experience should be much the same.
Quote:
Originally Posted by wpeckham View Post
There is no sure thing.
Some practices are safer than others, though.
 
Old 05-02-2024, 12:10 AM   #13
wpeckham
LQ Guru
 
Registered: Apr 2010
Location: Continental USA
Distribution: Debian, Ubuntu, RedHat, DSL, Puppy, CentOS, Knoppix, Mint-DE, Sparky, VSIDO, tinycore, Q4OS, Manjaro
Posts: 5,695

Rep: Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716Reputation: 2716
Quote:
Originally Posted by rkelsen View Post
That is true, but OpenVPN on a non-standard UDP port with certificate based authentication seems to come quite close.

I also log access attempts. Up until December last year, I was running OpenVPN on port 1194 and would usually get hit 6 to 8 times per day. Sometimes more, sometimes less, but there was never a day with no hits. In December, I change the config to use a non-standard UDP port... Haven't seen a single hit since. Not a one.

The experience has been such that I'd advise anyone and everyone to do the same whenever they have to expose a machine to the internet for whatever reason. You can call me crazy, but I don't even use SSH across the open internet without going through a VPN tunnel.

I've not used WireGuard, but I'm led to believe that the experience should be much the same.

Some practices are safer than others, though.
The ONLY VPN I trust is the one where I control both endpoints! But for that case, it is pretty good security. ALL of your traffic between those endpoints is encrypted. ALL traffic to anything PAST that endpoint is NOT encrypted, and people seem not to keep that in mind.
 
Old 05-02-2024, 08:42 AM   #14
rokytnji
LQ Veteran
 
Registered: Mar 2008
Location: Waaaaay out West Texas
Distribution: antiX 23, MX 23
Posts: 7,143
Blog Entries: 21

Rep: Reputation: 3481Reputation: 3481Reputation: 3481Reputation: 3481Reputation: 3481Reputation: 3481Reputation: 3481Reputation: 3481Reputation: 3481Reputation: 3481Reputation: 3481
Safe for me. Not safe for my wife when she asks " Can you send that to me ".

Then fresh clam can tell me if it is ok to send what ever.
I don't need it. But she does.

Pays to be polite.
 
Old 05-02-2024, 09:12 AM   #15
jailbait
LQ Guru
 
Registered: Feb 2003
Location: Virginia, USA
Distribution: Debian 12
Posts: 8,341

Rep: Reputation: 551Reputation: 551Reputation: 551Reputation: 551Reputation: 551Reputation: 551
I have been using Linux since 1999. I have never used anti-virus software. My protection is a complete multi-generation onsite and offsite backup system. The backup hardware is offline except when I do backups. I have a unique password for each site that requires a password (over 200 unique passwords). I do not use any of the "password cabinets" because that is the first place a hacker would look for my passwords. I turn my computers off when not in use. My computers have never been infected with a virus.

Last edited by jailbait; 05-02-2024 at 09:18 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Anti Virus/ Anti Spam for Linux? Sp@rticus Linux - Software 3 11-18-2005 02:17 AM
Boot virus or Anti-Virus? AVG Free Anti-Virus Software problems SparceMatrix Linux - Security 9 08-02-2004 02:35 PM
Creating an ultimate anti-virus and anti-spam email gateway markcc Linux - Networking 2 10-08-2003 03:10 AM
Anti trojan and anti virus--Iparmor ppsl Linux - Security 1 12-03-2002 04:33 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie

All times are GMT -5. The time now is 03:14 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration