Learn about the positives and negatives of Linux's peculiar patching process. . Unpatched vulnerabilities are one of the main points of entry for cyberattacks. Attacks on infrastructure are increasing, and IT teams are struggling to keep up with the swathe of new issues that are discovered. Patch management should therefore be a key focus for IT and security teams in the race to keep ahead of attackers. Linux is responsible for the vast majority of public cloud infrastructure - around 90 percent " data-component-tracked="1"> according to the 2017 Linux Kernel Development Report by the Linux Foundation. It also supports 82 percent of the world’s smartphones and nine of the top ten public clouds . Linux also has a good reputation for security, especially when compared to other operating systems. . Unaddressed flaws serve as gateways for cyber threats. Discover the significance of patching in bolstering Linux defenses.. Linux Patching Process, Cybersecurity Risks, Infrastructure Security, Patch Management Tools. . Brittany Day
A Chinese woman was arrested for sneaking into Trump's "Winter White House," a reminder of how exposed the president's private club is to physical and cybersecurity risks. . On Saturday afternoon, Yujing Zhang arrived at Mar-a-Lago and approached a Secret Service agent, seeking entry. She explained, according to court documents, that she was there to use the pool. What happened next illustrates just how hard it is to secure President Trump’s home away from the White House, and it joins a steadily growing number of concerning incidents. The link for this article located at The Register UK is no longer available. . Concerns grow about cybersecurity and physical risks after a Chinese woman enters Mar-a-Lago uninvited.. chinese, woman, arrested, sneaking, trump', winter, white, house, reminder, expos. . Dave Wreski
The Department of Defense will have to ramp up its cybersecurity efforts now that it's planning to spend $1.66 trillion to develop major weapons systems. According to a new report (PDF) by the Government Accountability Office, nearly all of Pentagon's weapons systems are vulnerable to cyberattacks.. The DoD, the report reads, didn't make cybersecurity a priority, even though GAO has been warning it for decades about the risks it's taking by not making sure its systems are properly protected. That leaves the nation's weapons, such missiles and drones, susceptible to attacks meant to take over their controls. The link for this article located at Engadget is no longer available. . The DoD, the report reads, didn't make cybersecurity a priority, even though GAO has been warning it. department, defense, cybersecurity, efforts, planning. . Brittany Day
The hacker in the Italian Job did it spectacularly. So did the fire sale team in Live Free or Die Hard. But can hackers really hijack traffic lights to cause gridlock and redirect cars?. According to one researcher, parts of the vehicle traffic control system installed at major arteries in U.S. cities and the nation The link for this article located at Wired is no longer available. . An investigator discloses the method by which cybercriminals can seize control of public transportation networks, leading to turmoil in key urban areas across the United States.. traffic control systems, cybersecurity threat, vehicle infrastructure, hacking risks. . LinuxSecurity.com Team
Stomping on the brakes of a 3,500-pound Ford Escape that refuses to stop. The more I pound the pedal, the louder the groan gets The link for this article located at Forbes is no longer available. . The growth of connected vehicles invites hackers to exploit vulnerabilities, revealing complex security challenges for manufacturers and consumers alike in automotive systems. Vehicle Security, Hacking Threats, Automotive Cyber Risks. . LinuxSecurity.com Team
Facebook's new Graph Search has security experts warning people who use the social network to raise their privacy settings in order to avoid embarrassment or becoming victims of cybercriminals. . Graph Search, which Facebook introduced this month and is rolling out gradually, lets people use naturally phrased queries, such as "Mexican restaurants my friends like," and receive personalized results. The service makes a lot more useful information available to people, and it gives Facebook a new venue for selling advertising. The link for this article located at Network World is no longer available. . Graph Search, which Facebook introduced this month and is rolling out gradually, lets people use nat. facebook's, graph, search, security, experts, warning, people, social, network, raise. . LinuxSecurity.com Team
The programmer who wrote ZeuS . But security experts believe there is a good chance he will soon emerge with even more powerful ways to steal, a pattern of behavior seen after previous retirements in 2007 and 2008. ZeuS' anonymous programmer, who lives in Russia and seems to like nice cars and powerful trucks, first introduced ZeuS in 2007 as spyware that would hide in users' computers and log keystrokes to steal passwords, said Don Jackson, director of threat intelligence at the security firm SecureWorks. The link for this article located at MSNBC is no longer available. . Analysts caution about a possible resurgence of the ZeuS creator, forecasting sophisticated techniques to pilfer information.. ZeuS Programmer, Hacker Threats, Cybersecurity Risks, Data Theft Prevention, Security Expert Insights. . Anthony Pell
Security firm Imperva reports a free phishing kit called "Login Spoofer 2010" that turns perpetrators into victims, is currently being touted in hacker forums. "Hackers" who have clicked through the foolproof user interface and used the program's wizard to set up their own online phishing page for PayPal, . Gmail, Skype, etc. are too quick to rub their hands because, although the phishing page does busily collect valid access credentials, the page creators only get to see a fraction of the data. In reality, the programmers of the phishing kit siphon off the collected login data behind the scenes. Forwarding only a few data sets to the operators of the phishing page to keep them happy and make them believe that the phishing kit is working as expected, the creators of the kit don't need to worry about obtaining web space or promoting their phishing pages. The English language software was apparently developed in Algeria, and the developers specifically offer quick-start instructions in Arabic. The link for this article located at H Security is no longer available. . Gmail, Skype, etc. are too quick to rub their hands because, although the phishing page does busily . security, imperva, reports, phishing, called, 'login, spoofer, 2010', turns, perpetrator. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.