

Get a ai agent, run it on your server as a un privileged user and ask it to do a security audit for you, delete the account after. If you want to get fancy make a new VM and give it root and ask it to probe your production host.
Everyone’s advice here is great, but you need to test your config and systems for gaps.







oh yeah, it does that!