Never heard of having to recompile the kernel just for security, why can't they just add those features built in? Recompiling a kernel is pretty much a software engineer task not a system administrator task, I don't think too many people compile their own kernels so it seems odd to say that it's a requirement. Either way I don't think it would serve much purpose in this case. If the torrent software does have an exploit that got attacked then the security lies in that app's hands in what the exploit allows the hacker to do (ex: remote code execution). I was more or less keeping stuff up to date but if I recall rtorrent was installed from source and not through yum so it makes it much harder to keep that up to date. TBH never actually attempted to update a package that's installed the ./configure way, what is involved? Not even sure how to uninstall, and guessing I can't just download the latest and reinstall, as it will probably just install two instances.
I regularly run yum update on all my systems though.
Have not had the chance to mess with this too much given it's Christmas time and every non holiday day I've been working, so I just turned it off for now.
No weird things on my other servers such as SSH brute force attempts so I'm thinking I'm fine. I really should run this VM on another vlan though... just need to figure out what to do for storage if I do that, since giving NFS access to my file server would defeat the purpose.