Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 0 articles for you...
83

New CryptoLocker Variant: Ransomware Attacks Target Online Gamers

Gamers may soon be feeling the pain of crypto-ransomware. A variant of CryptoLocker is in the wild that goes after data files associated with 20 different online games, locking downloadable content in an attempt to target younger computer users.. Researchers at Bromium today said an unnamed compromised website is serving the malware. Victims are redirected by a Flash exploit to a site hosting the Angler exploit kit, and Angler drops the CryptoLocker variant. The link for this article located at ThreatPost is no longer available. . Researchers at Bromium today said an unnamed compromised website is serving the malware. Victims are. gamers, feeling, crypto-ransomware, variant, cryptolocker. . LinuxSecurity.com Team

Calendar%202 Mar 13, 2015 User Avatar LinuxSecurity.com Team Hacks/Cracks
67

Matthew Green Discusses Crypto Advances and BREACH Attack Insights

Dennis Fisher talks with Matthew Green of Johns Hopkins University about the crypto advances in recent years, the BREACH attack revealed at Black Hat and whether it. . Dennis Fisher engages in an in-depth conversation with Matthew Green, exploring recent cryptocurrency advancements and the impact of the recent BREACH attack highlighted at Black Hat.. Crypto Advances,BREACH Attack,RSA Algorithm,Data Encryption,Cybersecurity Innovations. . LinuxSecurity.com Team

Calendar%202 Aug 09, 2013 User Avatar LinuxSecurity.com Team Cryptography
67

Potential Security Issues With AES And Serpent Encryption Methods

Theoretical attacks against AES (Advanced Encryption Standard) winner Rijndael and runner-up Serpent have been published. They might work in the practical world; they might not. That's about all we can say from the latest edition of Bruce Schneier's CryptoGram newsletter, which . . . . Theoretical attacks against AES (Advanced Encryption Standard) winner Rijndael and runner-up Serpent have been published. They might work in the practical world; they might not. That's about all we can say from the latest edition of Bruce Schneier's CryptoGram newsletter, which seeks to simplify the issues discovered by researchers Nicolas Courtois and Josef Pieprzyk, and elaborated in a paper entitled "Cryptanalysis of Block Ciphers with Overdefined Systems of Equations". Now while this represents an interesting bit of research, it does not mean that AES has been or even can be cracked in the real world. The work is theoretical and needs to be reviewed by others; and even if it's confirmed in theory and partially confirmed empirically, it may never be possible to exploit it. . Potential vulnerabilities in AES champion Rijndael and second-place Serpent spotlight concerns regarding encryption protocols.. AES Encryption,Rijndael,Security Issues,Serpent Encryption,Crypto Analysis. . LinuxSecurity.com Team

Calendar%202 Sep 17, 2002 User Avatar LinuxSecurity.com Team Cryptography
67

CodeCon: Cutting-Edge P2P Innovations and Crypto Audio Insights

The wonderful CodeCon conference that took place in San Francisco last weekend is now available as an audio stream. And in keeping with the true hackish nature of the event, the audio stream is a cross-platform DIY project in its own right.. . .. The wonderful CodeCon conference that took place in San Francisco last weekend is now available as an audio stream. And in keeping with the true hackish nature of the event, the audio stream is a cross-platform DIY project in its own right. CodeCon gathered together much of the most interesting bleeding-edge R&D work on distributed networks and crypto, and we'll give you a few pointers on where to move your WinAmp dial below. Probably what made this grassroots conference so enthralling was the absence of people who talk about stuff, and an abundance of people who do stuff. This is in marked contrast to the O'Reilly P2P conference exactly a year ago, which no self-respecting blog giant (hi Dave!) or media pundit could afford to miss. Such folk were conspicuous by their absence at CodeCon. On the other hand, we did get to hang out with Captain Crunch, which was a treat beyond compare. . Uncover the exhilarating insights from TechFest, showcasing recent breakthroughs in blockchain and decentralized finance, available now in audio form.. P2P Innovations, Crypto Developments, Audio Projects, Conference Insights. . LinuxSecurity.com Team

Calendar%202 Feb 25, 2002 User Avatar LinuxSecurity.com Team Cryptography
67

EU Commission Denies NSA Compromise of Encryption System

Paranoia is alive and well at the European Union (EU) Commission, which has been forced to officially deny its encryption system has been compromised by the NSA (National Security Agency). Fears of eavesdropping by the ultra-secretive US spy agency grew out of comments by a Commission employee, Briton Desmond Perkins, who told a EU Parliamentary committee of regular but unsuccessful attempts by the NSA to crack the Commission's encryption system.. . .. Paranoia is alive and well at the European Union (EU) Commission, which has been forced to officially deny its encryption system has been compromised by the NSA (National Security Agency). Fears of eavesdropping by the ultra-secretive US spy agency grew out of comments by a Commission employee, Briton Desmond Perkins, who told a EU Parliamentary committee of regular but unsuccessful attempts by the NSA to crack the Commission's encryption system. As reported on the UK Crypto mailing list, Perkins told the EU Parliament Echelon Committee last month that he knew of the NSA's activities because he had a relative (now retired) who worked at the agency. However these comments resulted in speculation that Perkins was an NSA mole. The link for this article located at The Register is no longer available. . Concerns escalate regarding NSA's efforts to breach the encryption used by the EU Commission, a denial prompted by remarks made by a staff member from the Commission.. EU Commission Encryption,Nsa Threats,Eavesdropping Concerns,Crypto Security,Encryption Denial. . LinuxSecurity.com Team

Calendar%202 Mar 09, 2001 User Avatar LinuxSecurity.com Team Cryptography
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200