Linux security professionals spend most of their time on concrete problems. Hardening SSH. Configuring SELinux or AppArmor. Building secure CI/CD pipelines. Managing patches across server fleets. The work is technical, hands-on, and measurable.
...
The Southern California Linux expo has announced that Sophos has signed on as one of the latest sponsors of SCALE 3x, the Third Annual Southern California Linux Expo. SCALE 3x has been called " .. one of the few good grass-root level technical conferences for Linux" by Linux Kernel Developer Robert Love.
The General Public License hasn't had a proper update for 13 years, and it's starting to show its age. It looks set to be updated though, to ensure it's more in tune with today's software models and potential legal battles.
"There is no single solution to the complex issues of security compliance under the HIPAA regulations," noted Dr. Braithwaite. "But there are certain best practices that every organization should follow. Employing encryption technologies in situations where the risk of a security breach is significant is an important core component of these solutions."
To celebrate the launch of the new LinuxSecurity.com, we hosted a community chat event. It was held yesterday (December 1st 2004) at 4:00pm, and featured several prominent visionaries from the open source community including Jay Beale, Brian Hatch, Paul Vixie, Lance Spitzner, and Dave Wreski. The topics discussed ranged from authentication, patch management, honeypots, virtues of open source, SELinux, as well as others. We are planning another event to held in January; please send us your ideas!
Security companies TruSecure and Betrusted are expected to formally announce on Tuesday that they plan to merge and create a newly formed company called Cybertrust. . . .
More than five million security alerts were recorded during 16 days of Olympic competition, according to Atos Origin, the company managing the Games' IT.< . . .
Embedded systems designers attending next week's Embedded Systems Conference, Boston, can see Trusted Computing components and applications in action and learn how to design in security based on Trusted Computing specifications. . . .
Sendmail has taken a first stab at software to authenticate the source of e-mail messages, a technology that will be key to preventing the proliferation of spam. The company released a module for its Sendmail e-mail server software that attempts to verify the source of messages to help Internet users block mail from unwanted senders. . . .
In a post-9/11 world, even the computers that run the Olympics have color-coded warnings for threats. "Green is good. Red is very bad," says Jean Chevallier, executive vice president of Atos Origin, Paris-based head of the Games' $400 million information system. In between are yellow (mild) and orange (more alarming). Halfway through the Athens Olympics, the worst anyone has seen here is "a light yellow," Chevallier says. . . .
Capture the flag might be only a game, but it was serious business at DefCon, the world's largest annual computer hacker convention. For 36 straight hours, eight teams of experienced hackers and serious security professionals played predator and prey as they tried to hack into competitors' networks while defending their own. . . .
In the truest sense, hacking is not an act; rather, it is a viewpoint, a set of tools for thinking about how to interact with systems. The late Judith Milhon, one of the first female hackers ever, defined hacking as "the clever circumvention of imposed limits." The early hackers at MIT and Stanford had limited access to the huge, expensive mainframes on which they worked, and so they devised clever and exotic ways both to gain more time and make their programming time more efficient. . . .
Stephen Wozniak, a founder of Apple Computer, was speaking to the choir Saturday at a conference in Midtown Manhattan, recalling an era when the word "hackers" referred to technological wizards, not rogue computer users... Mr. Wozniak described his relationship with John T. Draper, a man who became known as "Captain Crunch" 35 years ago when he showed how a plastic whistle that came in Cap'n Crunch cereal boxes could be used to manipulate the national phone system. . . .
ISECOM, is hosting a forum and exhibition on October 16, 2004 at the University of Nevada, Las Vegas, as part of their security event specifically for open source developers, thinkers, creators, and drivers of privacy and security. Details are available on the ISESTORM website https://www.isecom.org/isestorm/. . . .
THG regularly covers LAN Parties, during which gamers drink, socialize and, of course, play games. However, hackers and other technology professionals have also been doing this for several years at conventions such as Defcon, Toorcon and more recently at (LayerOne) the first annual LayerOne conference June 12-13 at the Westin Hotel near the Los Angeles International Airport. . . .
Registration for the DefCon 12 WarDriving Contest is now open. For the first time ever the Def Con WarDriving contest will be divided into two parts. A "Main Drive" that will run for the entire three days and four "Mini-Games" that allow contestants that would like to participate but do not want to invest the entire Con in WarDriving. . . .
The WWWD provides a snapshot of the security posture of currently deployed wireless access points throughout the world. During the Third WorldWide WarDrive, which took place in July 2003, over 88,000 unique access points were discovered worldwide. The statistics compiled for the WWWD have become the defacto standard for statistics used by many media outlets and wireless security vendors to further generate public awareness of wireless security issues. . . .
Infosecurity Europe 2004 opens its doors to over 10,000 buyers and sellers in IT Security. Infosecurity Europe provides the ultimate forum for sourcing opportunities, information updates and free educational forums, tackling the key technology issues set to affect your business . . .
The new Cyber Security Industry Alliance could benefit from greater cross-industry cooperation, says Giga Group security analyst Michael Rasmussen. "Otherwise this could be one more voice in the wilderness." . . .
April 27-30 , 2004 - 4 Days of Intense Hands-on Network and Wireless Security Training by Renowned Experts. Come to Dallas 4-Days prior to DallasCon 2004 and take part in this intense two-part, hands-on training developed to teach you the ins and outs of securing your Web-Enabled Services and Wireless Networks. In today's world, hacking and cyber attacks are becoming more common as tools to achieve them are more available and easier to use by hackers. . . .
Scott Yelich, a Unix administrator at a large Wall Street investment banking firm, attended the exhibition to search for Unix and Linux security products. But he was also looking for technology that secures mobile devices, he said. Holding out his . . .