Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 10 articles for you...
81

Amazon Employee Misconduct: Data Leak to Third-Party Seller

In September, Amazon started investigating reports that some of its employees in the US and China have been leaking data to third-party sellers in exchange for money. Now, the e-commerce giant has notified affected customers that an employee shared their email addresses with a third-party seller.. Amazon told The Wall Street Journal that it already fired that particular employee and booted the seller who received the email addresses off the platform. More importantly, it said no other customer information other than those addresses were disclosed. The link for this article located at Engadget is no longer available. . Amazon told The Wall Street Journal that it already fired that particular employee and booted the se. september, amazon, started, investigating, reports, employees, china. . LinuxSecurity.com Team

Calendar%202 Oct 07, 2018 User Avatar LinuxSecurity.com Team Privacy
81

Eir Data Breach: Unencrypted Laptop Results In Customer Data Exposure

It’s not great when any organisation loses a laptop, but if the contents of the computer’s hard drive have been fully encrypted and a strong password has been used it’s hardly the end of the world. After all, the chances of a criminal being able to access any sensitive information on the mislaid or stolen device is remote – and the cost should be limited to the purchase of a replacement.. But things are much worse if the lost laptop wasn’t encrypted, and contained the personal details of thousands of your customers. That’s what Irish telecoms operator Eir had admitted happened to it earlier this month, blaming a “faulty security update” for leaving unencrypted a staff member’s laptop which was stolen outside of one of its offices. The link for this article located at Tripwire is no longer available. . But things are much worse if the lost laptop wasn’t encrypted, and contained the personal details . great, organisation, loses, laptop, contents, computer’s. . LinuxSecurity.com Team

Calendar%202 Aug 23, 2018 User Avatar LinuxSecurity.com Team Privacy
83

Superdrug Incident: Data Breach Affects 20,000 Customer Accounts

Superdrug has warned customers of a security incident which may have resulted in the exposure of personal data.. On Tuesday evening, the UK health and beauty retailer emailed customers and also revealed on Twitter that an event had occurred "which may have resulted in the possible disclosure of some customers' personal information." The link for this article located at ZDNet is no longer available. . Boots announced a data breach impacting 15,000 clients' private information and cautioned about potential risks.. Data Exposure, Customer Privacy, Ransom Threat, Personal Information. . LinuxSecurity.com Team

Calendar%202 Aug 22, 2018 User Avatar LinuxSecurity.com Team Hacks/Cracks
82

Executive Order Targets Enhanced Cybersecurity Data Sharing Framework

With or without controversial new legislation such as the ​Cybersecurity Information Sharing and Protection Act, President Obama is doing his best to make sure companies share the information they know about you with the federal government.. On Friday, the president issued a cybersecurity executive order that creates a new framework for The link for this article located at motherboard is no longer available. . The head of state announces a sweeping directive aimed at enhancing collaborative efforts in cybersecurity intelligence dissemination among leading enterprises.. Customer Data Sharing, Cybersecurity Regulation, Privacy Framework. . Dave Wreski

Calendar%202 Feb 16, 2015 User Avatar Dave Wreski Government
83

TeamBerserk Hackers Claim $100K Theft: SQL Injection and Data Leak

A group of hackers, known as TeamBerserk, took credit on Twitter . Within their Friday tweet, the hacker collective posted a link to a 20-minute video that chronicles the attack. The end result is the attacker obtaining a spreadsheet of Sebastian customers' usernames and passwords in plaintext. The link for this article located at SC MagazIne is no longer available. . Cybercrime collective CodeRaiders asserts it has pilfered $150k via a cross-site scripting vulnerability, exposing user information.. TeamBerserk, SQL Injection Attack, Data Leak Incident, Cybersecurity News. . LinuxSecurity.com Team

Calendar%202 Oct 23, 2013 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Dropbox Data Breach: Customer Data Compromised Causing Spam Issues

Cloud storage service provider Dropbox has acknowledged that a file containing private customer data was stolen from the Dropbox account of one of the company's employees and that the information was subsequently used to send out spam messages to users.. In mid-July, a number of Dropbox users complained that they were receiving spam at email addresses used exclusively to sign into the storage service. As it turns out, this was no coincidence The link for this article located at H Security is no longer available. . In mid-July, a number of Dropbox users complained that they were receiving spam at email addresses u. cloud, storage, service, provider, dropbox, acknowledged, containing, private, customer. . LinuxSecurity.com Team

Calendar%202 Aug 01, 2012 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

AAPT: Security Breach Overview And Customer Data Concerns

HACKERS have stolen customer data from the internet company AAPT to highlight the dangers of a proposal to force telcos to store every Australian's web history for up to two years. . The chief executive of the internet service provider, David Yuile, confirmed the security breach, which occurred at 9.30pm Wednesday, in a statement to the Herald yesterday, saying he was 'extremely concerned'. AAPT is conducting an investigation and has promised to contact any affected customers. The link for this article located at The Age is no longer available. . Cybercriminals breach AAPT, compromising client information to expose dangers of online activity tracking.. Data Breach, Customer Privacy, Retention Proposal, Internet Security. . LinuxSecurity.com Team

Calendar%202 Jul 26, 2012 User Avatar LinuxSecurity.com Team Hacks/Cracks
76

U.K. ISPs Collaborate On Spam Research Project With New Guidelines

A new set of guidelines may pave the way for dozens of Internet service providers in the U.K. to participate in a research project into the problem of spam, estimated to make up 60% or more of the world's e-mail traffic. . The guidelines concern how ISPs should deal with sensitive issues such as customer privacy and data-protections laws, while cooperating to shut down machines propagating spam, said Martin Hutty, head of public relations for the London Internet Exchange (LINX), a group of around 220 ISPs and network providers. The link for this article located at Computer World is no longer available. . U.K. broadband providers might exchange information for a survey on unsolicited messages, focusing on user confidentiality and protocols for collaboration.. Spam Research, Internet Service Provider, Data Guidelines, Customer Privacy, Network Security. . Brittany Day

Calendar%202 Jul 11, 2006 User Avatar Brittany Day Organizations/Events
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200