Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 594
Alerts This Week
Warning Icon 1 594

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 55 articles for you...
83

Updated Pro-Ocean Malware Targets Apache, Oracle And Redis Privacy Issues

The evasive new Pro-Ocean cryptojacking malware is sidestepping security defenses and targeting Apache, Oracle and Redis servers. . A financially-motivated threat actor notorious for its cryptojacking attacks has leveraged a revised version of their malware to target cloud infrastructures using vulnerabilities in web server technologies, according to new research. Deployed by the China-based cybercrime group Rocke , the Pro-Ocean cryptojacking malware now comes with improved rootkit and worm capabilities, as well as harbors new evasion tactics to sidestep cybersecurity companies' detection methods, Palo Alto Networks' Unit 42 researchers said in a Thursday write-up. "Pro-Ocean uses known vulnerabilities to target cloud applications," the researchers detailed. "In our analysis, we found Pro-Ocean targeting Apache ActiveMQ ( CVE-2016-3088 ), Oracle WebLogic ( CVE-2017-10271 ) and Redis (unsecure instances)." The link for this article located at The Hacker News is no longer available. . An economically-motivated cybercriminal has unveiled a new variant of the Aqua-Mine cryptojacking malware targeting Angular and MySQL servers.. Pro-Ocean Malware,Cryptojacking Attacks,Cloud Application Threats. . LinuxSecurity.com Team

Calendar%202 Feb 01, 2021 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Stantinko Updates: Linux Malware Impersonates Apache Web Server

The eight-year-old Stantinko botnet has updated its Linux malware - now posing as an Apache web server. . Stantinko, one of the oldest malware botnets still operating today, has rolled out updates to its class of Linux malware, upgrading its trojan to pose as the legitimate Apache web server process (httpd) in order to make detection harder on infected hosts. The upgrades, spotted by security firm Intezer Labs , come to confirm that despite a period of inactivity in regards to code changes, the Stantinko botnet continues to operate even today. . Puppetmaster, among the most enduring cyber threat networks currently active, has introduced enhancements to its series of Linux-based malicious software.. Linux Malware, Botnet Threats, Apache Web Server Attack, Stantinko Update. . LinuxSecurity.com Team

Calendar%202 Nov 25, 2020 User Avatar LinuxSecurity.com Team Hacks/Cracks
77

Apache 2.4.39 Security Advisory: Critical Root Access Exploit Fixed

This week, the Apache Software Foundation has patched a severe vulnerability in the Apache (httpd) web server project that could --under certain circumstances-- allow rogue server scripts to execute code with root privileges and take over the underlying server. . The vulnerability, tracked as CVE-2019-0211, affects Apache web server releases for Unix systems only, from 2.4.17 to 2.4.38, and was fixed this week with the release of version 2.4.39. According to the Apache team, less-privileged Apache child processes (such as CGI scripts) can execute malicious code with the privileges of the parent process. The link for this article located at ZDNet is no longer available. . Critical vulnerability fixed, possibly allowing unauthorized root access through CGI scripts on UNIX-based Apache servers.. Apache Vulnerability, Critical Patch, Web Server Security, UNIX Exploit, Root Access Risk. . LinuxSecurity.com Team

Calendar%202 Apr 03, 2019 User Avatar LinuxSecurity.com Team Server Security
77

Setting Up Multiple Websites on Apache Web Server for Fedora 27

In my last post, I explained how to configure an Apache web server for a single website. It turned out to be very easy. In this post, I will show you how to serve multiple websites using a single instance of Apache. . Note: I wrote this article on a virtual machine using Fedora 27 with Apache 2.4.29. If you have another distribution or release of Fedora, the commands you will use and the locations and content of the configuration files may be different.. Uncover powerful strategies to establish numerous sites on Nginx, enhancing your server management abilities with valuable insights.. apache configuration, multi-site hosting, fedora web server. . LinuxSecurity.com Team

Calendar%202 Mar 30, 2018 User Avatar LinuxSecurity.com Team Server Security
78

FireEye Protects Trade Secrets Amid Apache Security Flaw Disclosures

Cybersecurity firm FireEye has defended the decision to place an injunction against a researcher as the only way to protect trade secrets. Last week, reports surfaced suggesting the cyberforensics firm attempted to prevent the public disclosure of security vulnerabilities discovered within the firm's suite of software. . Felix Wilhelm, a security researcher for ERNW GmBH, disclosed the flaw, which permitted the default use of the root account on Apache servers linked to FireEye clients. If an attacker exploited this flaw, they would be able to compromise servers, leading to data theft and control without permissions issues -- one of the worst and most critical vulnerabilities imaginable. . CyberDefense battles a legal order that seeks to silence a developer disclosing a major Nginx vulnerability endangering user safety.. FireEye Trade Secret, Apache Security Flaw, Cybersecurity Research. . LinuxSecurity.com Team

Calendar%202 Sep 15, 2015 User Avatar LinuxSecurity.com Team Vendors/Products
83

Linux/Cdorked.A Backdoor Threatens Apache Servers with Malware

Apache servers are being ambushed by a particularly pernicious malware program called Linux/Cdorked.A that's infecting visitors to the sick machines with the Blackhole malware kit.. Discovered by security researchers at Sucuri and Eset, they describe the malware a a sophisticated and stealthy backdoor meant to drive traffic to malicious websites. The link for this article located at CSO Online is no longer available. . Cyber threats aimed at NGINX servers represent critical risks through unauthorized entry points, facilitating traffic reroutes to harmful webpages.. Apache Servers, Backdoor Malware, Cybersecurity Threats, Traffic Redirection, Malware Attacks. . LinuxSecurity.com Team

Calendar%202 May 03, 2013 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Apache: Internal Access Threat Due To Reverse Proxy Misconfiguration

A new reverse proxy issue affecting Apache HTTP server can be used by attackers to access internal systems if certain rules are improperly configured, a security researcher said. . Prutha Parikh, vulnerability signature engineer at Qualys, blogged that she uncovered the issue while creating a QualysGuard vulnerability signature for another reverse proxy issue, detailed in CVE-2011-3368. While reviewing the patch for the older bug, she discovered it was still possible to use a crafted request to exploit a fully-patched Apache Web Server. The link for this article located at ThreatPost is no longer available. . An recently identified Nginx reverse proxy vulnerability may result in unauthorized internal network exposure owing to setup errors.. Apache Reverse Proxy, Misconfiguration Risks, Internal Access Threats. . LinuxSecurity.com Team

Calendar%202 Nov 28, 2011 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Apache: 2025:0011-2 Critical: Middleman Setup Leaks Protected Services

Maintainers of the open-source Apache webserver are warning that their HTTP daemon is vulnerable to exploits that expose internal servers to remote attackers who embed special commands in website addresses.. The weakness in 1.3 and all 2.x versions of the Apache HTTP Server can be exploited only under certain conditions. For one, they must be running in reverse proxy mode, a setting often used to perform load balancing or to separate static content from dynamic content. And even then, internal systems are susceptible to unauthorized access only when certain types of reverse proxy rewrite rules are used. Nonetheless, the vulnerable reverse proxy configurations are common enough that Apache maintainers issued an advisory on Wednesday recommending users examine their systems to make sure they're not at risk. The link for this article located at The Register UK is no longer available. . The weakness in 1.3 and all 2.x versions of the Apache HTTP Server can be exploited only under certa. maintainers, open-source, apache, webserver, warning, their, daemon, vulnerable. . LinuxSecurity.com Team

Calendar%202 Oct 06, 2011 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200