Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 491
Alerts This Week
Warning Icon 1 491

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 69 articles for you...
67

Investigating Side-Channel Attacks: Risks to Data Encryption

Israel-based researchers said they. The new study builds on research into what can be learned from the electronic signals that waft from computers while performing computations, often referred to as side-channel attacks.. Studies underscore dangers of side-channel assaults that unveil encryption keys via electromagnetic emissions.. Data Encryption, Side-Channel Attack, Computation Signals. . LinuxSecurity.com Team

Calendar%202 Jun 22, 2015 User Avatar LinuxSecurity.com Team Cryptography
83

Protect Your Computer From DMA Attacks: Effective Prevention Techniques

Direct Memory Access (DMA) is a controller feature that has been available at least since the original IBM PC. It can be used by hackers to compromise your otherwise very heavily protected computer. Fortunately, there are steps you can take to minimize DMA-based attacks.. Although DMA attacks have been possible for decades, they gained notoriety in 2009 when researchers discovered DMA could be used to compromise Microsoft's BitLocker Drive Encryption technology, according to a Princeton University paper. The white-hat researchers were able to recover the private keys in several popular encryption systems, including BitLocker, FileVault, dm-crypt, and TrueCrypt, using off-the-shelf components. The link for this article located at InfoWorld is no longer available. . Although DMA attacks have been possible for decades, they gained notoriety in 2009 when researchers . direct, memory, (dma), controller, feature, least, since, origin. . LinuxSecurity.com Team

Calendar%202 Jun 17, 2014 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

NSA's Specialized Unit Intercepts Deliveries for Spyware Deployment

A special hacking unit of the U.S. National Security Agency intercepts deliveries of new computer equipment en route to plant spyware, according to a report on Sunday from Der Spiegel, a German publication.. The method, called "interdiction," is one of the most successful operations conducted by the NSA's Office of Tailored Access Operations (TAO), which specializes in infiltrating computers, wrote the publication, citing a top-secret document. The link for this article located at Network World is no longer available. . CIA's elite team adeptly executes network surveillance to introduce malware, exposing critical data vulnerabilities.. NSA Operations, Cyber Surveillance, Computer Security, Spyware Interception. . LinuxSecurity.com Team

Calendar%202 Dec 30, 2013 User Avatar LinuxSecurity.com Team Hacks/Cracks
76

Understanding Computer Security Evolution At DefCon Conferences

This week we have the DefCon 20 and Black Hat computer security conferences in Las Vegas -- reasons enough for me to do 2-3 columns about computer security. These columns will be heading in a direction I don. Computer criminals and vigilantes today topple companies and governments, but 20 years ago it was just kids, or seemed to be. I should know, because I was there -- the only reporter to attend Def Con 1. The link for this article located at Beta News is no longer available. . Computer criminals and vigilantes today topple companies and governments, but 20 years ago it was ju. defcon, black, computer, security, conferences, vegas, reasons. . Alex

Calendar%202 Jul 31, 2013 User Avatar Alex Organizations/Events
82

Raynaldo Rivera Arrested For Hacking Sony Pictures: Cyber Crime Update

A second alleged member of LulzSec has been arrested on charges of having hacked the Sony Pictures website last year.. The FBI Tuesday announced the arrest in Phoenix of Raynaldo Rivera, 20, after he was named in a federal grand jury indictment. The indictment, which was returned on August 22 but not unsealed until Tuesday, charged Rivera on two counts: unauthorized impairment of a protected computer and conspiracy. If convicted on all counts, Rivera faces up to 15 years in prison. The link for this article located at Information Week is no longer available. . The FBI Tuesday announced the arrest in Phoenix of Raynaldo Rivera, 20, after he was named in a fede. second, alleged, member, lulzsec, arrested, charges, having, hacked, pictures. . Dave Wreski

Calendar%202 Aug 29, 2012 User Avatar Dave Wreski Government
83

U.S. Prisons Under Threat: Remote Lock Hacking Risks Identified

Federal authorities are concerned about new research showing U.S. prisons are vulnerable to computer hackers, who could remotely open cell doors to aid jailbreaks.. The Federal Bureau of Prisons is The link for this article located at Washington Times is no longer available. . Studies indicate that security flaws in American correctional facilities could be exploited by hackers, heightening concerns regarding possible escapes.. Prison Security,Cyber Attacks,Remote Access Risks. . LinuxSecurity.com Team

Calendar%202 Nov 07, 2011 User Avatar LinuxSecurity.com Team Hacks/Cracks
78

Microsoft Blue Hat Prize: $260K Contest For Memory Safety Innovations

Amid recent high-profile hacking attacks on government and corporate websites, Microsoft is offering a $260,000 (P11.026 million) reward for "Blue Hat" hackers who can think of creative ways to support computer security.. Microsoft launched the Blue Hat Prize contest this week to encourage "new ideas" for defensive approaches to support computer security. "As part of our commitment to a more secure computing experience, we hope to inspire security researchers to develop innovative solutions intended to address serious security threats," it said. The inaugural contest urges security researchers to design a "novel runtime mitigation technology" to prevent the exploitation of memory safety vulnerabilities.. Google initiated the Green Shield Challenge to promote innovative solutions for combating cybersecurity vulnerabilities.. blue hat prize, innovative security solutions, memory safety, security researcher, computer security strategies. . LinuxSecurity.com Team

Calendar%202 Aug 04, 2011 User Avatar LinuxSecurity.com Team Vendors/Products
76

Ongoing Investigation Of Anonymous Group And Cyber Security Issues

More arrests could be made as federal authorities take aim at a gang of computer hackers known as Anonymous. So far, 16 arrests have been made which included a 20-year-old UNLV student.. The virtual vigilante group launched an attack against Paypal for suspending Wikileaks' accounts. Anonymous is also taking credit for hacking the CIA, Twitter, Mastercard and Visa sites. There haven't been any major cases prosecuted against Anonymous because they're hard to find. The U.S. Attorney has done more than 75 searches as part of the investigations into these hacking attacks. But even the most sophisticated software can't keep out hackers. The link for this article located at 8newsnow is no longer available. . Authorities intensify probe into cyber collective Anonymous as multiple detentions occur, exposing critical vulnerabilities in cybersecurity.. Anonymous Group, Cyber Attack, Online Threats, Computer Security, Federal Investigation. . Dave Wreski

Calendar%202 Jul 21, 2011 User Avatar Dave Wreski Organizations/Events
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200