Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
It'll take the London region's public school board more than three weeks to fix a privacy breach created in about an hour - way too long for a basic security feature, says one technology specialist.. London police criminally charged a 15-year-old self-described hacker with breaking into the Thames Valley District school board's website and exposing the passwords of 27,000 high school students on Oct. 23. It was the largest security breach in the board's history. Ordinarily, conviction on the four charges the youth faces could lead to as many as 10 years in prison, depending how the Crown proceeds. The link for this article located at Toronto Sun is no longer available. . London police criminally charged a 15-year-old self-described hacker with breaking into the Thames V. it'll, london, region's, public, school, board, three, weeks, privacy, breach. . LinuxSecurity.com Team
Whether it be insecure Web applications, poor password management, or a lack of database policies and monitoring, the average database today is at risk of exposure through a host of different threat vectors that many organizations are not even aware of -- let alone are addressing. Already in 2010, the number of database breaches as a result of such mistakes is mounting.. The list of disturbing database breaches so far this year mostly could have been avoided. The affected organizations had to learn the hard way, through public embarrassment and expensive incident response procedures. But the missteps that led to them provide a cautionary tale for other organizations. "Security needs to be addressed by appropriate policies and systems, but perhaps more importantly a cultural commitment and buy-in by employees to achieving security," Daniel Mayo and Graham Titterington, principal analysts for Ovum, wrote recently about database security. Garnering that cultural commitment starts with awareness. Here are six of the more eye-popping database-related breaches so far this year -- and some lessons learned from each: The link for this article located at Dark Reading is no longer available. . In 2010, major database breaches highlighted vulnerabilities in cybersecurity, emphasizing the need for robust security measures and staff training on phishing identification. Database Breach,Cybersecurity Lessons,Security Management,Incident Response,Threat Awareness. . LinuxSecurity.com Team
The jewel of eWEEK Labs' Openhack e-commerce site -- the database -- has been cracked, and the hack has revealed a previously unreported hole in an operating system running some of the biggest Web sites in the world: Sun Microsystems Inc.'s . . . . The jewel of eWEEK Labs' Openhack e-commerce site -- the database -- has been cracked, and the hack has revealed a previously unreported hole in an operating system running some of the biggest Web sites in the world: Sun Microsystems Inc.'s Solaris 8. The crack was performed by none other than Spanish security consultant Lluis Mora, the same person who felled eWEEK Labs' previous security test site. On July 15, at about 3:30 am GMT, Mora, who goes by the handle JFS, retrieved protected information from the database server of the Labs' and security firm Guardent Inc.'s online Openhack security test. The link for this article located at ZDNet eWeek is no longer available. . Tech Guard's Cyber Vault compromised, revealing severe vulnerability in Linux 5.4, impacting numerous online platforms.. Openhack Database, Solaris Security, Breach Incident. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.