Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -1 articles for you...
83

OpenWRT: January Breach Report and Admin Account Compromise

OpenWRT has disclosed a data breach that occurred after a malicious hacker gained access to a forum admin account. The OpenWRT wiki, which contains the official download links, was not compromised, the project said.. The maintainers of OpenWRT , an open-source project that provides free and customizable firmware for home routers, have disclosed a security breach that took place over the weekend. According to a message posted on the project's forum and distributed via multiple Linux and FOSS-themed mailing lists , the security breach took place on Saturday, January 16, around 16:00 GMT, after a hacker accessed the account of a forum administrator. . OpenWRT reported a security incident where an intruder gained unauthorized entry to an administrator account on its forum, impacting the community's safety.. OpenWRT Data Breach, Firmware Security, Admin Account Compromise. . LinuxSecurity.com Team

Calendar%202 Jan 19, 2021 User Avatar LinuxSecurity.com Team Hacks/Cracks
77

Samba 4 AD DC Advisory: Password Change Risk For Admin Accounts

Samba admins: get patching and/or updating. Unless you’re content to have your admin passwords overwritten by, well, anyone else using Samba.. That’s the gist of an advisory warning that “On a Samba 4 Active Directory domain controller (AD DC) any authenticated user can change other users' passwords over LDAP, including the passwords of administrative users and service accounts.” . Samba 4 Active Directory Domain Controller enables any verified user to modify administrative passwords, revealing critical vulnerabilities in security measures.. Samba Administration, Password Change Threat, Active Directory Risks, Samba Update Advisory. . LinuxSecurity.com Team

Calendar%202 Mar 14, 2018 User Avatar LinuxSecurity.com Team Server Security
83

Australian Websites Targeted: 200+ Attacks Using Admin Access Exploit

The web sites of more than a whopping 200 Australian organisations were hijacked and vandalised in a spate of hacks last week. In the largest single attack, a hacker gained administrative access to the Direct Admin server management system used by a hosting provider, who Computerworld Australia will not name, and suspended 159 accounts rendering their web sites inaccessible to the public. . The suspension notification page was then defaced with the hackers' moniker and religious propaganda. The hack was launched through a flaw created after an automatic patch of the admin system failed to complete. The link for this article located at Network World is no longer available. . The suspension notification page was then defaced with the hackers' moniker and religious propaganda. sites, whopping, australian, organisations, hijacked, vandalised. . LinuxSecurity.com Team

Calendar%202 Jun 30, 2010 User Avatar LinuxSecurity.com Team Hacks/Cracks
77

WordPress: Critical Update For Admin Password Access Issue

WordPress, the popular blogging software platform, has been updated to fix a flaw that could have enabled a hacker to change an administrator password. The bug enables a specially crafted URL to evade a password reset security verification check, Matt Mullenweg, founding developer of WordPress, said Wednesday on the organization's blog.. The link for this article located at SC Magazine is no longer available. . A significant update has been rolled out by WordPress, addressing a critical vulnerability that might enable cybercriminals to alter administrator passwords.. WordPress Update, Admin Security, Password Flaw Fix. . LinuxSecurity.com Team

Calendar%202 Aug 13, 2009 User Avatar LinuxSecurity.com Team Server Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200