Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
They're out there, says security researchers: the Chinese hackers attempting to break into U.S. enterprises, and jihadist terrorists that brazenly post videos of sniper killings, while stealing credit-cards to launder money for funding nefarious campaigns in Mideast or Caucasus hot spots.. It's just a matter of finding them, and Dell SecureWorks researcher Joe Stewart described at the RSA Conference this week how he caught one by laboriously collecting information related to a Chinese hacker. He's calling the incident the "Sin Digoo Affair" after the misspelling of San Diego in Internet domain registrations under the fake name of "Tawnya Grilth" that he saw over and over again, which was but one clue, including many others such as malware signatures, he followed in his quest to track down an attacker based on a case of industrial espionage and botnets. The link for this article located at PC World is no longer available. . Discover how Joe Stewart, an investigator at Dell, meticulously tracked a cybercriminal by employing systematic analysis and vital evidence, illuminating the perils of the digital world.. Internet Theft, Cybersecurity Tactics, Malware Analysis, Hacker Identification, Industrial Espionage. . Alex
The techniques used by unloveable rogues who automate search engine manipulation attacks themed around breaking news to sling scareware have been unpicked by new research from Sophos.. A research paper published on Wednesday by Sophos researchers Fraser Howard and Onur Komili lifts the lid on the search engine optimisation techniques used by hackers to hook surfers into their scams. Attackers use automated kits to apply blackhat SEO methods The link for this article located at The Register UK is no longer available. . Explore the techniques used in search engine manipulation tactics revealed in new research by Sophos on hackers' methods.. Search Engine Manipulation,Cybersecurity Tactics,Blackhat SEO,Hackers' Methods. . LinuxSecurity.com Team
A novel tactic to defeat phishers is being employed by Cyota staff: flooding phishing sites with fake bank details to make the real information harder to find. RSA's Cyota division is helping fight phishing attacks by giving the online fraudsters what they want — lots of user names, passwords, online banking credentials and credit card numbers. . Phishing occurs when cybercriminals set up fraudulent copies of a genuine Web site — usually of a financial institution — and try to lure customers of that organisation into visiting the site and entering their login credentials or other personal details. Unfortunately for the phishers, one of the techniques Cyota is using to help protect its banking customers is to pump such fraudulent Web sites with so many fake entries that the genuine details are harder to find, according to Naftali Bennett, senior vice president of the Consumer Solutions Division at RSA Security and co-founder of Cyota, which was acquired by the security giant late last year. The link for this article located at ZDNet UK is no longer available. . Malicious actors create fraudulent platforms to trick individuals into divulging personal information, whereas RSA combats this with tactics focused on overwhelming data streams.. phishing Prevention, online Fraud, credential Security, data Flooding, cybercrime Tactics. . LinuxSecurity.com Team
Paring down your network services isn't the only way to protect your systems against attacks: port scanning can also be an effective tool. In this month's Building Blocks of Security, Sandra Henry-Stocker shows you how to stay one step ahead of . . . . Paring down your network services isn't the only way to protect your systems against attacks: port scanning can also be an effective tool. In this month's Building Blocks of Security, Sandra Henry-Stocker shows you how to stay one step ahead of your enemy. Minimizing services is just the beginning of adopting a defensive posture, however. Numerous security experts suggest that thinking like an attacker is the only way to prepare yourself to defend your site. This month, we'll examine port scanning (sending packets to systems and gaining insight from the responses) -- which has been compared to tapping on walls to determine where beams are located -- and look at what an intruder can determine about services you're running. The link for this article located at LinuxWorld is no longer available. . Paring down your network services isn't the only way to protect your systems against attacks: port s. paring, network, services, isn't, protect, systems, against, attacks. . LinuxSecurity.com Team
The US is planning to turn the internet into a battleground. Air Force Lieutenant General Michael Hayden, head of the super-secret National Security Agency (NSA), said that cyberspace had become an important strategic target. . The US is planning to turn the internet into a battleground. Air Force Lieutenant General Michael Hayden, head of the super-secret National Security Agency (NSA), said that cyberspace had become an important strategic target. The link for this article located at vnunet.com is no longer available. . The US is planning to turn the internet into a battleground. Air Force Lieutenant General Michael Ha. planning, internet, battleground, force, lieutenant, general, michael. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.