Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Two recently discovered Linux botnets - DreamBus and FreakOut - are designed for DDoS attacks, cryptocurrency mining and other malicious purposes. . Two dangerous new botnets have emerged in recent days targeting Linux-based systems worldwide. One of them, dubbed "DreamBus," is malware with worm-like behavior that is capable of propagating itself both across the Internet and laterally through compromised internal networks using a variety of techniques. . A pair of threatening new botnets have surfaced this week, focusing on Linux systems across the globe.. DreamBus Botnet,FreakOut Threat,Linux Malware,DDos Attacks,Cryptocurrency Mining. . LinuxSecurity.com Team
Cybercrooks have cooked up a Linux backdoor boasting multiple malicious functions. The Swiss Army Knife-style malware . To spread the new Linux backdoor, criminals mount a brute force attack to establish an SSL connection with a target machine. The link for this article located at The Register UK is no longer available. . A recently discovered Linux vulnerability enables hackers to exploit machines for DDoS attacks by leveraging brute force SSL connection methods.. Linux Backdoor, DDoS Attack, Cyber Threat, Brute Force Attack, Malware Distribution. . LinuxSecurity.com Team
Hackers are preparing to raise the stakes in their next assault on anti-piracy organisations after they crippled the website of the Australian Federation Against Copyright Theft (Afact) on Tuesday.. Users on Internet Relay Chat (IRC) boards and 4chan are nominating new victims for distributed denial-of-service (DDoS) attacks under a campaign dubbed 'Operation Payback'. Among the suggestions for targets are the corporate email servers of anti-piracy organisations. BitTorrent monitoring service NG3Sys has also been nominated for attack for its role in assisting law firm ACS:Law target UK users who downloaded copyrighted pornographic content. The link for this article located at ZDNet is no longer available. . Users on Internet Relay Chat (IRC) boards and 4chan are nominating new victims for distributed denia. hackers, preparing, raise, stakes, their, assault, anti-piracy, organisations. . LinuxSecurity.com Team
Arbor has released their 2009 Worldwide Infrastructure Security Report and it is an interesting read. The largest DDoS increased nearly 5-fold from 2004 to 2008 (and doubled from 2006 to 2008) to 49Gbps. At that size, you definitely need the assistance of your upstream service provider to mitigate. The report also shows the continuing trend of not reporting/referring attacks to law enforcement.. The report can be found at The link for this article located at SANS is no longer available. . The report can be found at The link for this article located at SANS is no longer available.. arbor, released, their, worldwide, infrastructure, security, report, interesting. . LinuxSecurity.com Team
An attack in early February on key parts of the backbone of the internet had little effect, thanks to new protection technology, according to a report released this week. The distributed denial-of-service attack on the Domain Name System (DNS) proved the effectiveness of the Anycast load-balancing system, the Internet Corporation for Assigned Names and Numbers (ICANN) said in a document published on Thursday. ICANN regulates internet domain name and address registration and operates one of the main so-called root DNS servers. . "The internet sustained a significant distributed denial-of-service attack, originating from the Asia-Pacific region, but stood up to it," according to the ICANN document, which attributed the internet's fortitude to Anycast's routing of traffic to the nearest server. DNS serves as the address book for the internet, mapping text-based domain names to the actual numeric IP addresses of servers connected to the internet, and vice versa. A distributed denial-of-service attack seeks to bring targeted servers down by sending an onslaught of traffic from multiple sources, typically compromised PCs. The link for this article located at CNET News.com is no longer available. . The unprecedented DDoS on the web infrastructure in March prompted the deployment of advanced Anycast solutions, bolstering resilience.. Anycast Technology, DDoS Attack Mitigation, DNS Security, Internet Backbone Protection, Network Traffic Management. . Bill Locke
Computer researchers in Europe are developing a new prototype architecture for halting distributed denial-of-service (DDOS) attacks, where a barrage of traffic is directed at a Web site or server to shut it down.The Diadem Firewall deploys both hardware and software on the edge of a provider's network rather than within, said Georg Carle, chair of the computing and Internet department at the University of T. The link for this article located at Info World is no longer available. . An investigation into a groundbreaking firewall model seeks to counteract Distributed Denial of Service (DDOS) threats through advanced design principles.. DDoS Mitigation, Firewall Innovation, Cyber Attack Prevention. . Brittany Day
A Spanish hacker who launched a denial of service attack that hobbled the net connections of an estimated three million users has been jailed for two years and fined €1.4m. Santiago Garrido, 26, (AKA Ronnie and Mike25) launched the attack using a computer worm in retaliation for been banned from the popular "Hispano" IRC chat room for breaking its rules. . The link for this article located at TheRegister.co.uk is no longer available. . The link for this article located at TheRegister.co.uk is no longer available.. spanish, hacker, launched, denial, service, attack, hobbled, connections. . LinuxSecurity.com Team
Forward-looking companies have long realized the great business opportunities that the Internet offers and it's no secret that organizations are shifting more and more of their business processes online. While this move brings many advantages with it, such as widening customer reach and reducing overheads, the emergence of organized crime in the online world means that business needs to be sharper than ever when it comes to security. . While viruses and worms usually steal the headlines, the growing threat of a distributed denial-of-service (DDoS) attack is a form of cybercrime to which no company can say 'they wouldn't target us'. Whilst the first well-documented attacks were against gambling sites and online payment systems, no company should consider itself immune. Especially when your organization will undoubtedly share its Internet Service Provider (ISP) with other businesses who rely on e-commerce and might be more desirable targets to criminals looking for extortion money. The question you need to ask is - if the company's web site or ISP was unavailable for hours or days, would it effect the business in terms of lost revenues and damage to reputation? Most organizations would quickly answer 'yes'. So what is a DDoS attack? The aim of a DDoS attack is to paralyze online systems. The attacker compromises a number of unprotected hosts and installs a 'demon' or 'trojan' onto the system. The trojan-infected hosts in turn act as handlers and are able to compromise other computers, which operate as agents for the attack. The link for this article located at SC Magazine is no longer available. . While viruses and worms usually steal the headlines, the growing threat of a distributed denial-of-s. forward-looking, companies, realized, great, business, opportunities, internet. . Brittany Day
Get the latest Linux and open source security news straight to your inbox.