Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 2 articles for you...
83

NASA Mars Rover: Experts Assess Anonymous Hacking Threat

The word has been out for more than a week now that the hacktivist group Anonymous is looking to break into the communication system between NASA and the Mars rover, Curiosity. . The New York security firm Flashpoint Partners reported that it found a message on an Internet Relay Chat (IRC) by a user called "MarsCuriosity," asking for help to hack into the signals NASA uses to communicate with the rover. But within the security community, the rumor has been greeted mostly with yawns, shrugs or a few scornful chuckles. No panic buttons are being pressed. It is being viewed either as a "weak" attempt at trolling, or an effort by law enforcement to lure hackers to fall for a sting. The link for this article located at CSO Online is no longer available. . The New York security firm Flashpoint Partners reported that it found a message on an Internet Relay. hacktivist, group, anonymous, looking. . LinuxSecurity.com Team

Calendar%202 Aug 22, 2012 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Federal Prison Systems: Access Control Issues Raise Security Concerns

Computer systems used to control federal prison facilities are riddled with vulnerabilities that might allow criminals to meddle with cell door opening mechanisms or shut down internal communications systems, according to security researchers.. The vulnerabilities The link for this article located at The Register UK is no longer available. . Significant weaknesses within national incarceration facilities can create pathways for illicit entry, jeopardizing inmate safety and information integrity.. Prison Control Systems, Cyber Threats, Access Control Issues. . LinuxSecurity.com Team

Calendar%202 Nov 09, 2011 User Avatar LinuxSecurity.com Team Hacks/Cracks
74

Assessing Skype Security: Implications for Corporate Networks and Users

There's been a lot information -- and misinformation -- available about whether Skype is dangerous to corporate networks and individual users. How dangerous is it? In this article, I'll separate the truth from the myths when it comes to Skype vulnerabilities. . Skype is a peer-to-peer (P2P) application, meaning that users connect to one another directly and not through a central server for communication. Skype initially uses Internet-based servers to authenticate users when they log in and to track their status, but when a "chat" or instant message, "voice call" or "file transfer" is initiated, the parties involved in the communication do so in a P2P direct connection. If one or both of the users are behind a typical corporate Network Address Translation (NAT) firewall, the communication can be relayed through a Supernode because a direct P2P can't be established behind a NAT. In the case of a file transfer, you will see a message indicating your transfer is being relayed. The link for this article located at ComputerWorld is no longer available. . Using Skype as a P2P application presents risks that can jeopardize user security and privacy, necessitating awareness and proactive safety measures from users. Skype Security Risks, P2P Communication Threats, Corporate Network Safety. . Brittany Day

Calendar%202 Mar 06, 2007 User Avatar Brittany Day Network Security
81

Digital Signatures: Risks and Legal Binding in Linux Systems

Digital signatures were designed to allow secure, confidential communication between two parties. As Wikipedia describes it: "A user may digitally sign messages using his private key, and another user can check that signature (using the public key contained in that user's certificate issued by a certificate authority). This enables two (or more) communicating parties to establish confidentiality, message integrity and user authentication without having to exchange any secret information in advance." . Are digital signatures legally binding? Usually. Check your local statutes. Are they foolproof? Not usually. For years, Prof. Ferenc Leitold of the University of Veszprem has been explaining the dangers of digital signatures to the world at large. This week, he's doing it again at the 15th EICAR Annual Conference in Hamburg, Germany. The link for this article located at Email Battles is no longer available. . Are digital signatures legally binding? Usually. Check your local statutes. Are they foolproof? Not . digital, signatures, designed, allow, secure, confidential, communication, between, parties. . LinuxSecurity.com Team

Calendar%202 May 08, 2006 User Avatar LinuxSecurity.com Team Privacy
74

Exploring Wireless Security Risks And Effective Defense Methods

Wireless communication has dramatically changed the way people work and interact. Unfortunately, the wireless era also continues to be plagued by insufficient security, and both corporations and users are being put at risk. To be sure, cell phones, personal digital assistants . . . . Wireless communication has dramatically changed the way people work and interact. Unfortunately, the wireless era also continues to be plagued by insufficient security, and both corporations and users are being put at risk. To be sure, cell phones, personal digital assistants and wireless laptops have helped usher in an era of mobile computing that's marked by increased productivity and fast return on investment. . The evolution of mobile connectivity has revolutionized our social exchanges yet introduces vulnerabilities. Investigate protective measures to ensure secure transmissions.. Wireless Security, Mobile Computing, Security Strategies. . Anthony Pell

Calendar%202 Nov 10, 2003 User Avatar Anthony Pell Network Security
74

Risks of Email Interception and How to Secure Your Data

The Internet has radically changed the way we communicate with each other. Email is obviously an extremely valuable and ubiquitous form of communication, but with this technology comes certain pitfalls that should be understood. The path that an email message takes . . . . The Internet has radically changed the way we communicate with each other. Email is obviously an extremely valuable and ubiquitous form of communication, but with this technology comes certain pitfalls that should be understood. The path that an email message takes to reach its recipient is a complex and varying one, and while in transit that message may come under the potential scrutiny of numerous different people and organizations. We will attempt to outline the varying paths that an email message may travel, and who some of those different people and organizations might be under whose scrutiny the message may pass. The intention of the document is not to provide a how-to guide; the only specific technique that will be discussed, packet sniffing, is one that anybody with any technical networking knowledge whatsoever is already familiar with - which brings us to an important point. At a round number, there are probably at least a million people in the world with the requisite technical knowledge necessary to intercept Internet-based email. Yes, I said a million. (There are actually probably a lot more than that - maybe several million by now, and more everyday as the populace becomes more networking-literate.) Fortunately, the number of those people who actually have the physical access necessary to intercept email is much smaller, but it is still a very large number. The link for this article located at WildID is no longer available. . Delve into the critical threats that your emails encounter while being sent over the internet, and understand how they can be intercepted. Uncover essential information on this matter.. email interception risks, network security threats, data privacy issues. . Anthony Pell

Calendar%202 Aug 06, 2001 User Avatar Anthony Pell Network Security
81

Discovering Digital Mailbox Solutions for Americans with Uncle Spam

Uncle Sam could become "Uncle Spam" if the government follows through with plans for creating an "official U.S. e-mail box" for every address in America, say industry executives briefed on the proposal. . . .. Uncle Sam could become "Uncle Spam" if the government follows through with plans for creating an "official U.S. e-mail box" for every address in America, say industry executives briefed on the proposal. The ruckus began earlier this week, when the U.S. Postal Service disclosed that it was exploring the e-mail idea.The government would use the e-mail addresses to send driver's license renewal forms, tax documents and other materials that would normally be sent by snail mail. And Americans would visit two mailboxes every day -- the ones outside their homes and the ones inside their computers, said Deputy Postmaster General John M. Nolan. The link for this article located at ZDNet is no longer available. . Uncle Sam could become 'Uncle Spam' if the government follows through with plans for creating an 'of. uncle, become, 'uncle, spam', government, follows, through, plans, creating. . LinuxSecurity.com Team

Calendar%202 Aug 03, 2000 User Avatar LinuxSecurity.com Team Privacy
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200