Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 0 articles for you...
83

Apache: 2025:0011-2 Critical: Middleman Setup Leaks Protected Services

Maintainers of the open-source Apache webserver are warning that their HTTP daemon is vulnerable to exploits that expose internal servers to remote attackers who embed special commands in website addresses.. The weakness in 1.3 and all 2.x versions of the Apache HTTP Server can be exploited only under certain conditions. For one, they must be running in reverse proxy mode, a setting often used to perform load balancing or to separate static content from dynamic content. And even then, internal systems are susceptible to unauthorized access only when certain types of reverse proxy rewrite rules are used. Nonetheless, the vulnerable reverse proxy configurations are common enough that Apache maintainers issued an advisory on Wednesday recommending users examine their systems to make sure they're not at risk. The link for this article located at The Register UK is no longer available. . The weakness in 1.3 and all 2.x versions of the Apache HTTP Server can be exploited only under certa. maintainers, open-source, apache, webserver, warning, their, daemon, vulnerable. . LinuxSecurity.com Team

Calendar 2 Oct 06, 2011 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Gmail: Cookie Exploit Severity Mitigated For User Protection

A security hole in Google's Gmail service, which reportedly made it easy for hackers to access users' e-mail, has been corrected, Google says. The security breach made it easy for hackers to obtain and exploit users' cookie files. . . .. A major security hole was discovered in Google's Gmail service, according to several news reports that surfaced over the weekend, but the problem reportedly was corrected as of Saturday. "Google was recently alerted to a potential security vulnerability affecting the Gmail service. We have since fixed this vulnerability, and all current and future Gmail users are protected," Google says in a statement. Simple Hack An Israeli hacker named Nir Goldshlagger told an Israeli publication about the flaw. The vulnerability allowed hackers access into Gmail accounts by obtaining the Gmail user's cookie file, which allowed the user to log onto Gmail without retyping his or her password, according to Goldshlagger. Using the cookie, the hacker could then obtain authentication as the Gmail user. . A major security hole was discovered in Google's Gmail service, according to several news reports th. security, google's, gmail, service, which, reportedly, hackers, users. . LinuxSecurity.com Team

Calendar 2 Nov 01, 2004 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Microsoft ASP.NET: Critical Access Risk from URL Processing Flaw

Updated: A glitch in the platform's processing of URLs could allow intruders to access password-protected sections of a Web site simply by altering a URL. . . .. Updated: A glitch in the platform's processing of URLs could allow intruders to access password-protected sections of a Web site simply by altering a URL. Microsoft Corp. is investigating a reported security flaw in its ASP.NET technology that could allow intruders to access password-protected sections of a Web site simply by altering a URL. The hole involves a glitch in ASP.NET's processing of URLs, a process known as canonicalization. According to an advisory posted Tuesday on Microsoft's Web site, "an attacker can send specially crafted requests to the server and view secured content without providing the proper credentials." The link for this article located at Simone Kaplan is no longer available. . Updated: A glitch in the platform's processing of URLs could allow intruders to access password-prot. updated, glitch, platform's, processing, allow, intruders, password-prot. . LinuxSecurity.com Team

Calendar 2 Oct 11, 2004 User Avatar LinuxSecurity.com Team Hacks/Cracks
74

NortonLifeLock: Important Alert About VPN DoS Vulnerability and Risks

Symantec has warned of a serious flaw in its VPN and firewall server products that could allow an attacker to take over affected systems and gain access to corporate networks. . . .. Symantec has warned of a serious flaw in its VPN and firewall server products that could allow an attacker to take over affected systems and gain access to corporate networks. Internet Security Systems (ISS) X-Force had first discovered the flaw in the Entrust module running on some of Symantec's gateway products. The module, which implements the IKE key exchange protocol, was not properly validating incoming ISAKMP packets. Internet Security Association and Key Management Protocol (ISAKMP) is a standard protocol for creating dynamic VPN tunnels. By sending sufficiently malformed ISAKMP packets, an attacker could cause a DoS condition in the affected VPN component. Or, if specifically crafted, the malformed ISAKMP packets could potentially lead to a further possible compromise of the VPN server. The link for this article located at CXOtoday Staff is no longer available. . A significant vulnerability in Norton’s VPN and firewall threatens enterprise systems and escalates security worries.. Symantec VPN Vulnerability,Firewall Security Flaw,ISAKMP Protocol Threats. . Anthony Pell

Calendar 2 Sep 02, 2004 User Avatar Anthony Pell Network Security
74

Kevin Curran Discusses Network Access Risks and Cyber Threats

Kevin Curran, an IT lecturer at the University of Ulster's Magee campus, said companies across the province using wireless computer networks were leaving themselves open to hackers who can use their systems to surf the net for free - even for . . . . Kevin Curran, an IT lecturer at the University of Ulster's Magee campus, said companies across the province using wireless computer networks were leaving themselves open to hackers who can use their systems to surf the net for free - even for accessing child pornography. As part of a research project, Mr Curran and a colleague were able to penetrate 15 company networks in Derry in a few hours using just a laptop, and discovered another five which could have been hacked with little effort. They used around £80 worth of other equipment, a wireless WiFi card and a magnetic mount omnidirectional antenna, which can be found at any computer store. The link for this article located at Belfast Telegraph is no longer available. . Kevin Curran, an IT lecturer at the University of Ulster's Magee campus, said companies across the p. kevin, curran, lecturer, university, ulster's, magee, campus, companies, across. . Anthony Pell

Calendar 2 Dec 04, 2003 User Avatar Anthony Pell Network Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here