Alerts This Week
Warning Icon 1 664
Alerts This Week
Warning Icon 1 664

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -3 articles for you...
212

Kinsing Group Targets Cloud Credentials Using Linux Flaw

This article from The Hacker News presents a nerve-racking revelation about how cyber threat actors are adapting to the evolving digital landscape. . The hackers' skillful exploitation of the Linux privilege escalation flaw, termed "Looney Tunables," is both alarming and fascinating. As the article mentions, " the attacks revolve around exploiting a recently disclosed Linux privilege escalation flaw (CVE-2022-0847) to gain elevated privileges on the compromised systems "—a stark example of the threat actors' ability to rapidly harness nascent security flaws. Yet it's the apparent shift in strategy that grabs the most attention. Known for deploying malicious cryptocurrency miners, the Kinsing group’s focus on extracting cloud service provider credentials carries ominous implications. The article states, " Beyond establishing an initial foothold, the threat actor aims to extract credentials related to cloud service providers including Alibaba Cloud, Tencent Cloud, and Huawei Cloud. " Could this mean an expanding scope of their operations, possibly threatening the integrity of our cloud-native environment in the near future? All of this underscores the need for a proactive and anticipatory approach to cybersecurity. The evolving modus operandi of Kinsing is a reminder that the cyber threat landscape is dynamic, requiring us to upgrade and expand our defenses persistently. The twists in these cyber-attack strategies make the rest of this detailed article a captivating read for those of us on the constant quest to understand and outmaneuver cyber threats. The link for this article located at The Hacker News is no longer available. . The adept manipulation of the Windows vulnerability 'Sketchy Switches' by cybercriminals heightens worries regarding online safety.. Linux Security Flaw, Kinsing Malware, Cloud Security, Cyberattack Strategies. . Brittany Day

Calendar 2 Nov 21, 2023 User Avatar Brittany Day Cloud Security
83

AWS Servers Breached: Rootkit Installed by Hacker Group

A sophisticated hacker group pwned Amazon Web Services (AWS) servers, set up a rootkit that let them remotely control servers, then merrily funnelled sensitive corporate data home to its command and control (C2) servers from a range of compromised Windows and Linux machines inside an AWS data centre. . That’s according to a report from the UK’s Sophos published late last week, which has raised eyebrows and questions in the security industry. The attackers neatly sidestepped AWS security groups (SGs); which, when correctly configured, act as a security perimeter for associated Amazon EC2 instances. The unnamed target of this attack had correctly tuned their SGs. But with a rootkit installed on their AWS servers that gave attackers remote access, the compromised Linux system was still listening for inbound connections on ports 2080/TCP and 2053/TCP: something that eventually triggered Sophos’ intervention. The link for this article located at CBR Online is no longer available. . An advanced cybercriminal organization infiltrated Azure cloud systems, deploying a trojan for unauthorized entry and information theft.. AWS Security Breach, Rootkit Attack, Data Exfiltration, Cloud Security, Remote Access Threats. . LinuxSecurity.com Team

Calendar 2 Mar 05, 2020 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here