Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
IceFire has changed up its OS target in recent cyberattacks, emblematic of ransomware actors increasingly targeting Linux enterprise networks, despite the extra work involved. . In recent weeks, hackers have been deploying the "IceFire" ransomware against Linux enterprise networks, a noted shift for what was once a Windows-only malware. A report from SentinelOne published today suggests that this may represent a budding trend. Ransomware actors have been targeting Linux systems more than ever in cyberattacks in recent weeks and months, notable not least because "in comparison to Windows, Linux is more difficult to deploy ransomware against, particularly at scale," Alex Delamotte, security researcher at SentinelOne, tells Dark Reading. But why, if Linux makes their job more difficult, would ransomware actors be moving increasingly toward it? The link for this article located at Dark Reading is no longer available. . The rising focus of IceFire ransomware on Linux enterprise infrastructures poses significant security challenges.. IceFire Ransomware,Linux Cyberattacks,Enterprise Network Protection,Ransomware Trends. . Brittany Day
Linux operating systems power more than 90% of the world’s public cloud workload , from government web servers to smart manufacturing technologies. But as organizations continue to shift operations to the cloud, cybercriminals are following suit and directing their attention to Linux-based cyberattacks. . With a reputation for providing more robust security than rival operating systems, Linux can give users a false sense of security. Consequently, IT and security teams often deprioritize security measures that prevent cybercriminals from gaining unauthorized network access. The simple reality is that no operating system is bulletproof, which is evident when you look at the 650% increase in malware targeting Linux in H1 2022 compared to the previous year. So, to effectively defend customers’ cloud environments against sophisticated attackers, managed service providers (MSPs) need to stay current in best security practices for Linux and guide customers through the deployment of end-to-end security measures. . Explore methods to strengthen client protections against Linux-targeted threats, fostering a resilient cloud security framework.. Linux Cyberattack Defense, Cloud Security Strategies, Managed Service Provider Security. . Brittany Day
The new Capoae Go malware, which targets WordPress installs and Linux systems, highlights the increase of cyberattacks designed to deploy cryptocurrency-mining payloads. . A new strain of malware, written in Go, has been spotted in cyberattacks launched against WordPress and Linux systems. On Thursday, Larry Cashdollar, senior security researcher at Akamai said the malware, dubbed Capoae, is written in the Golang programming language -- fast becoming a firm favorite with threat actors due to its cross-platform capabilities -- and spreads through known bugs and weak administrative credentials. Vulnerabilities exploited by Capoae include CVE-2020-14882 , a remote code execution (RCE) flaw in Oracle WebLogic Server, and CVE-2018-20062 , another RCE in ThinkPHP. . A novel type of malicious software, developed in Go, has been detected in cyber operations targeting WordPress and Linux infrastructures.. Capoae Malware, Linux Attack, WordPress Security, Go Programming, Cyber Threats. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.