A serious flaw in the GnuPG crypto library can be pwned during decryption, potentially resulting in Remote Code Execution (RCE). Patch now! . Bug hunter Tavis Ormandy of Google’s Project Zero just discovered a dangerous bug in the GNU Privacy Guard team’s libgcrypt encryption software. The libgcrypt library is an open-source toolkit that anyone can use, but it’s probably best known as the encryption library used by the GNU Privacy Guard team’s own widely deployed GnuPG software (that’s the package you are using when you run the command gpg or gpg2 ). . An alarming flaw found in OpenSSL's security framework may result in potential exploitation risks. Update immediately!. GnuPG, Remote Code Execution, Critical Threat, Libgcrypt, Encryption. . Brittany Day
Federal restrictions will be relaxed on the export of open-source software that incorporates strong encryption, the US government announced on Friday in a lengthy disclosure. The effect of the changes announced in the US Federal Register is that cryptography software now may be exported to Cuba, Iran, North Korea, Syria, and Sudan as long as the source code from which it was derived is already . To qualify for the exemption, exporters must first notify the federal government exactly where the code is located. The link for this article located at The Register UK is no longer available. . To qualify for the exemption, exporters must first notify the federal government exactly where the c. federal, restrictions, relaxed, export, open-source, software, incorporates, strong. . LinuxSecurity.com Team
Linux Full Disk Encryption (LFDE) is a tool designed to provide Linux with a means to do true full disk encryption (FDE).. What do we mean by "true" full disk encryption? It means exactly what we say. The LFDE tool configures your entire Linux hard disk to be encrypted. Our approach is different to the default encryption built into distributions such as Ubuntu and Fedora because we don't leave the /boot partition unencrypted on the hard disk. We move it to a bootable USB key along with a far more secure key to unlock the hard disk.. EFSD offers genuine complete disk encryption for Unix, safeguarding your whole hard drive better than typical techniques.. Full Disk Encryption,Linux Security,Data Protection. . LinuxSecurity.com Team
After rolling out the first Linux edition of its desktop encryption security software last month -- together with new support for the latest versions of Windows and Mac -- PGP Corp. on Monday announced major server updates that will let PGP be managed alongside myriad other approaches to encryption.. Released on January 19, the new PGP Desktop 10.0 product brings new support for Windows 7, MacOS X 10.6 Snow Leopard, and two flavors of Linux: Ubuntu and Red Hat. The software also works on Windows Vista, XP, and 2000, earlier editions of Mac OS, and Windows Mobile and BlackBerry phones, said Karthik Krishnan, senior director of product management, in a briefing for Betanews. Version 10 also adds greater ease of use and new capabilities not provided by the Bitlocker feature in Windows 7 and Vista, for instance, according to Krishnan. For example, if you lose your encryption password, you can now retrieve it by successfully answering Q&A challenges incorporated into the desktop software.. The updated PGP Desktop 10.0 boosts protection by introducing compatibility with Linux and Windows 7 alongside enhanced capabilities for retrieving forgotten passwords.. PGP Security,Linux Encryption Support,Desktop Security,Encryption Software. . LinuxSecurity.com Team
One of the best ways to protect sensitive computer data like credit card numbers and social security information is to use encryption software. Encryption software executes an algorithm that is designed to encrypt data in such a way that it cannot be recovered (decrypted) without access to the key. It is a main component of all aspects of file protection and computer communication. Files on hard drives and other removable media, email messages, and packets sent over computer networks can be made secure by encryption software.. For those of you who are interested, here's a list of well-known free and open source encryption software for Linux: TrueCrypt TrueCrypt is one of the most popular disk encryption tools around. It can encrypt and decrypt files on-the-fly (real-time) as needed without user intervention beyond entering the passphrase. TrueCrypt is capable of creating a virtual encrypted disk within a file or a device-hosted encrypted volume on either an individual partition or an entire storage device. It currently uses the XTS mode of operation but is backward compatible with older volumes. The link for this article located at Tech Source from Bohoi is no longer available. . Examine well-known free and open-source encryption solutions available for Linux to protect your confidential information securely.. Open Source Encryption, Linux Data Security, Disk Protection Tools. . LinuxSecurity.com Team
TrueCrypt is a free opensource software system for establishing and maintaining an on-the-fly-encrypted volume (data storage device). On-the-fly encryption means that data are automatically encrypted or decrypted right before they are loaded or saved, without any user intervention. No data stored on an encrypted volume can be read (decrypted) without using the correct password/keyfile(s) or correct encryption keys. Entire file system is encrypted (e.g., file names, folder names, contents of every file, free space, meta data, etc). Have you ever wondered how to encrypt a filesystem? This article does this by showing user's how to use TrueCrypt. Do you use any other tools for encrypting your data? . The link for this article located at susegeek is no longer available. . Investigate BitLocker’s functionality for seamless encryption, providing robust security for your files effortlessly.. TrueCrypt, Disk Encryption, Encryption Software, Data Protection, On-the-Fly Encryption. . LinuxSecurity.com Team
Do you consider your files "top secret" information? Do you keep sensitive work information or bank account information on your computer? What your gift list for the holiday season? :) Either way, if you want some serious encryption on you system, look no further than EasyCrypt: a military grade encryption tool that can allow for AES 512-bit Whirlpool encryption. I tried using TrueCrypt on Ubuntu in the past, but found it annoying to be entering terminal commands several times a day to access the encrypted file. I find Easy Crypt to be a speedy, practical, and easy to use interface on a daily basis. With the basic Easy Crypt setup, your locked files are saved as a hidden file in your user directory, located at /home/username/.easycrypt-crypt (although using the . The link for this article located at Ubuntu Guru is no longer available. . Discover Simple Secure, a cutting-edge AES 512-bit encryption tool tailored for Ubuntu users seeking robust protection.. Data Security, Linux Encryption, Easy Crypt, AES 512-bit, Encryption Software. . LinuxSecurity.com Team
How easy is it for the average internet user to make a phone call secure enough to frustrate the NSA's extrajudicial surveillance program? Wired News took Phil Zimmermann's newest encryption software, Zfone, for a test drive and found it's actually quite easy, even if the program is still in beta. Zimmermann, the man who released the PGP e-mail encryption program to the world in 1991 -- only to face an abortive criminal prosecution from the government -- has been trying for 10 years to give the world easy-to-use software to cloak internet phone calls. . The link for this article located at Wired.com is no longer available. . The link for this article located at Wired.com is no longer available.. average, internet, phone, secure, enough, frustrate. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.