Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges

Alerts This Week
Warning Icon 1 488
Alerts This Week
Warning Icon 1 488

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -2 articles for you...
67

AES Encryption Key Length Reduction Due To New Vulnerability Findings

A team of researchers has discovered a first vulnerability in the AES encryption standard that shortens the algorithm's effective key length by two bits. This means that the usual key lengths of 128, 192 and 256 bits are reduced to 126, 190 and 254 bits.. Andrey Bogdanov from the Catholic University of Leuven, Christian Rechberger from ENS Paris and Dmitry Khovratovich from Microsoft Research, who discovered the hole, say that the attack has no practical relevance. Nevertheless, the findings are considered an important step in the research into the security of AES, a standard that was officially adopted in 2000. The link for this article located at H Security is no longer available. . Researchers identified a flaw in the SHA-256 hashing algorithm that compromises its collision resistance, raising concerns about data integrity.. AES Encryption, Key Length Reduction, Crypto Attack. . LinuxSecurity.com Team

Calendar%202 Aug 19, 2011 User Avatar LinuxSecurity.com Team Cryptography
67

Upcoming AES Products Following NIST Approval of Rijndael Algorithm

Products certified for the new Advanced Encryption Standard should be available almost as soon as the proposed standard receives formal approval, officials at the National Institute of Standards and Technology said last week. NIST last October selected the powerful Rijndael algorithm . . . . Products certified for the new Advanced Encryption Standard should be available almost as soon as the proposed standard receives formal approval, officials at the National Institute of Standards and Technology said last week. NIST last October selected the powerful Rijndael algorithm as the basis for the new standard, which will replace the aging Data Encryption Standard. A public comment period on the selection closes May 29, after which the secretary of Commerce is expected to approve it as a new Federal Information Processing Standard. Companies such as RSA Security Inc. of Bedford, Mass., and Baltimore Technologies Ltd. of Dublin, plan to release commercial products using Rijndael within days of the FIPS status. Other vendors are scheduling AES evaluations at independent laboratories. "They all want to be first," said Edward A. Roback, chief of NIST's Computer Security Division. [All of article] The link for this article located at Newsbytes is no longer available. . Authorized AES Encryption solutions are set to debut shortly following NIST’s formal endorsement of the updated guideline aimed at enhancing data protection.. AES Certification, Rijndael Algorithm, Data Protection, Encryption Technology. . LinuxSecurity.com Team

Calendar%202 Apr 30, 2001 User Avatar LinuxSecurity.com Team Cryptography
67

NIST AES Selection Announcement After Three-Year Competition

The National Institute of Standards and Technology (NIST), an agency of the US Commerce Department's Technology Administration, will announce its choice for the Advanced Encryption Standard (AES) at 11:00 a.m. EDT today. The announcement, which will be broadcast on the Web . . . . The National Institute of Standards and Technology (NIST), an agency of the US Commerce Department's Technology Administration, will announce its choice for the Advanced Encryption Standard (AES) at 11:00 a.m. EDT today. The announcement, which will be broadcast on the Web at at this time, represents the culmination of three years of open competition conducted by NIST to select the final AES candidate. The competition started with 15 encoding algorithms developed by leading cryptographers from 12 different countries. The 15 candidate algorithms were reduced to five last year. The link for this article located at NewsBytes is no longer available. . The National Institute of Standards and Technology (NIST), an agency of the US Commerce Department's. national, institute, standards, technology, (nist), agency, commerce, department's. . LinuxSecurity.com Team

Calendar%202 Oct 02, 2000 User Avatar LinuxSecurity.com Team Cryptography
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200