Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
On Sunday morning, Nate Daiger, one of the owners of a small Los Angeles-based hosting company Chunk Host, received an odd email on his phone.. The email came from SendGrid, a company used by Chunk Host to send its email. SendGrid specializes in ensuring an organization's legitimate emails get through and aren't mistakenly picked off by spam filters. The link for this article located at IT World is no longer available. . The email came from SendGrid, a company used by Chunk Host to send its email. SendGrid specializes i. sunday, morning, daiger, owners, small, angeles-based, hosting, company, chunk. . LinuxSecurity.com Team
Spammers are currently sending large volumes of spam to users of cloud storage service provider Dropbox. The H's associates at heise Security have so far received four different pieces of German-language spam at an email address used solely to register with Dropbox, and some of their readers have reported the same problem; similar reports can also be found on the Dropbox forums. In almost all cases, the spam is for suspicious-looking online casinos.. The link for this article located at H Security is no longer available. . Fraudsters prey on OneDrive users with questionable betting site advertisements. Check out the concerning testimonials from victims and analysts.. Dropbox Spam Attacks, Online Casino Fraud, Email Threats. . LinuxSecurity.com Team
A German software company known for its Windows utilities is warning customers to be on the alert for malicious e-mail messages after its servers were hacked.. Ashampoo, which also makes multimedia programs and security software, warned customers Wednesday that it had been hacked and that customers could now be sent infected emails that give criminals a way into their computers. "We assume that the attackers were able to purloin data of customers," the company said in an e-mail message sent to customers. Billing information such as credit card numbers was not stolen, the company said, because that data is stored on another server, operated by a contractor. The company has nearly 14 million customers, but it's not immediately clear how many have had their names and e-mail addresses stolen. The link for this article located at Computer World is no longer available. . Avast informs users about possible phishing threats following a recent breach of their web servers impacting account safety.. Ashampoo, Server Breach, Email Safety, Customer Alert. . LinuxSecurity.com Team
Delivery notices from the post office, messages from out-of-touch friends and headlines from seasonal sporting events look innocent enough when they arrive in emailform.. But they all can bear malicious links ready to unleash computer-enabled chaos with just a single click. Most of us have received the horrified e-mail: "My e-mail was hacked!!! I'm so sorry!" Some of us have even sent one ourselves. But how exactly do e-mail viruses spread? And what should you do if one ensnares you? The link for this article located at ABC News is no longer available. . But they all can bear malicious links ready to unleash computer-enabled chaos with just a single cli. delivery, notices, office, messages, out-of-touch, friends, headlines, seasona. . LinuxSecurity.com Team
The latest MessageLabs Intelligence Report from Symantec Hosted Services is filled with interesting and useful information regarding the current state of malware and e-mail borne threats as well as the trends over time. Of particular interest to me is the assertion in the report that "any given Linux machine is five times more likely to be sending spam than any given Windows machine.". I am generally one of the first to point out that the security risks associated with the Windows operating system are often exaggerated, or at least that the relative threat level is a function of market share, and that if Linux or Mac OS X had 90 percent market share those systems would be at least as vulnerable, and at least as targeted by malicious attack as Windows is now. That said, saying that Linux is five times more likely to distribute spam than Windows seemed like skewed math for the sake of sensationalism. I checked with other malware security experts to gather some additional insight on the issue of Linux as a purveyor of spam. What I found was a consensus regarding the root cause behind the metrics, and ultimately that Linux may, in fact, be an inordinate source of spam messages. Tyler Reguly, lead research engineer for nCircle, told me "I actually find the report rather odd, and also question their methods for remote fingerprinting. If they were using passive fingerprinting on mail coming into their server, they wouldn't necessarily have an accurate fingerprint of the host sending the mail. They could instead be fingerprinting a mail server with an open relay, or an ISP "smarthost". They also acknowledged that much of the Linux attributed spam could be coming from direct marketing emails... these would most likely be mailed out through a proper mail server (which is quite likely to be running Linux)." The link for this article located at PC World is no longer available. . I am generally one of the first to point out that the security risks associated with the Windows ope. latest, messagelabs, intelligence,report, symantec, hosted, services, filled, interesting. . LinuxSecurity.com Team
Spam and botnets have hit their highest levels ever, according to McAfee's second-quarter Threats Report, released Wednesday. McAfee's Avert Labs says spam recorded in the second quarter shot up 80 percent compared with the first quarter of the year.. This follows a brief reprieve from spam following last year's shutdown of the McColo ISP. June alone saw the largest amount of spam recorded by McAfee, surpassing the previous monthly high in October by more than 20 percent. McAfee now estimates that spam accounts for 92 percent of all e-mail. The link for this article located at CNET is no longer available. . This follows a brief reprieve from spam following last year's shutdown of the McColo ISP. June alone. botnets, their, highest, levels, according, mcafee's, second-quarter, threats. . Anthony Pell
It has just become apparent that, on June 16, attackers hacked into the web server of the SquirrelMail open source project. The operators have suspended all accounts and reset all crucial passwords. Access to the original server and to all the available plug-ins has also been disabled. The operators believe that none of the plug-ins has been compromised, but investigations are still in progress. Third party plug-ins can be used to add features to SquirrelMail.. It is currently unknown as to how the intruders hacked into the server. According to the server operators, the SquirrelMail web mailer's source code was not accessible at any time because it is located on a different server. However, phishers are currently trying to convince users otherwise with a spamming campaign. In an email, they claim that versions 1.4.11, 1.4.12 and 1.4.13 contain a back door, and that version 1.4.15 has, therefore, been made available to download: The link for this article located at H Security is no longer available. . It is currently unknown as to how the intruders hacked into the server. According to the server oper. become, apparent, attackers, hacked, server, squirrelma. . LinuxSecurity.com Team
" Spammers have switched their tactics with the latest "storm worm" run in hopes of getting more of the malicious messages delivered into company inboxes. " This attack is one example of a social engineering attack. How effective are these attacks? I feel that these attacks are effective but I don't see why users of the internet don't be more careful. We all know the risks of opening unknown emails but users still do. Is this because of the lack on knowledge or just laziness? . ophos deliver a simplified platform at every vulnerable point The link for this article located at scmagazine is no longer available. . Investigate the latest strategies employed by the Storm Worm to breach email defenses, heightening worries regarding user vigilance.. Storm Worm Attack, Email Security, Cyber Threats, Social Engineering, User Awareness. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.