Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 464
Alerts This Week
Warning Icon 1 464

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 3 articles for you...
212

Exploit Risks of Misconfigured Azure Services in EmojiDeploy Attack Chain

Multiple misconfigurations in a service that underpins many Azure features could have allowed an attacker to remotely compromise a cloud user's system. . An attack chain exploiting misconfigurations and weak security controls in a common Azure service is highlighting how lack of visibility impacts the security of cloud platforms. The "EmojiDeploy" attack chain could allow a threat actor to run arbitrary code with the permission of the Web server, steal or delete sensitive data, and compromise a targeted application, Ermetic stated in its Jan. 19 advisory . An attacker could use a trio of security issues affecting the common Source Code Management (SCM) service — a cloud service used by many Azure applications without an explicit indication to the user, according to Ermetic. The issues demonstrate that the security of cloud platforms are undermined by the lack of visibility into what those platforms do under the hood, says Igal Gofman, head of research for Ermetic. The link for this article located at DarkReading is no longer available. . A vulnerability pathway leveraging insufficient configurations and lax defenses in a widely used Azure platform could present significant threats.. AzureService, CloudSecurity, MisconfigurationRisk, AttackChain. . Brittany Day

Calendar%202 Jan 26, 2023 User Avatar Brittany Day Cloud Security
83

Webcam Security Risks: Minor Bugs Create Major Cyber Threats

More insecure webcams! Inattention to IoT security! Who would have thought?. Unfortunately, cybersecurity still seems to sit way down in Nth place for many vendors when they start programming their latest and greatest Internet of Things (IoT) devices. In this case, the bugs are in a family of webcams – and not just any old webcams, but security webcams. The link for this article located at Naked Security/Sophos is no longer available. . The security of IoT gadgets frequently gets neglected, resulting in substantial risks stemming from trivial flaws in smart speakers and beyond.. IoT Devices, Webcam Security, Cyber Threats, Exploit Risks. . LinuxSecurity.com Team

Calendar%202 Jun 13, 2018 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Internet Explorer Heap Overflow Advisory: Serious Code Execution Threat

US-CERT on Wednesday warned of a fresh hole in Internet Explorer that could allow attackers to take control of a PC via an HTML e-mail message or a malicious Web page. The flaw is all the more serious because exploit code has been published on public mailing lists, according to security researchers. . . .. US-CERT on Wednesday warned of a fresh hole in Internet Explorer that could allow attackers to take control of a PC via an HTML e-mail message or a malicious Web page. The flaw is all the more serious because exploit code has been published on public mailing lists, according to security researchers. The flaw, a heap buffer overflow, is in the way IE handles two attributes of the "frame" and "iframe" HTML elements. An exploit currently circulating uses overly long SRC and NAME attributes to cause IE to execute an attacker's shell code, according to US-CERT. Users could be attacked via a malicious Web page viewed in an affected version of IE or possibly through an HTML e-mail viewed in an application such as Outlook, Outlook Express, AOL or Lotus Notes that relies on the WebBrowser ActiveX control, according to researchers. The bug has been confirmed in IE 6.0 on Windows XP with SP1 and all patches installed, as well as the same browser on a fully patched Windows 2000, according to an advisory from security firm Secunia. Microsoft Corp. has not yet released a patch. The link for this article located at eweek.com is no longer available. . US-CERT on Wednesday warned of a fresh hole in Internet Explorer that could allow attackers to take . us-cert, wednesday, warned, fresh, internet, explorer, allow, attackers. . LinuxSecurity.com Team

Calendar%202 Nov 05, 2004 User Avatar LinuxSecurity.com Team Hacks/Cracks
77

RealNetworks: Media Players Security Flaws Affecting Exploit Risk

EEye Digital Security has uncovered new security holes affecting a wide range of RealNetworks' media players, the latest desktop-based bugs set to worry IT managers. The flaws could be exploited via a malicious webpage or a RealMedia file run from a local drive to take over a user's system or delete files, according to RealNetworks. . . .. EEye Digital Security has uncovered new security holes affecting a wide range of RealNetworks' media players, the latest desktop-based bugs set to worry IT managers. The flaws could be exploited via a malicious webpage or a RealMedia file run from a local drive to take over a user's system or delete files, according to RealNetworks. Researchers have turned up a myriad of serious security flaws in client software over the past few weeks, and such bugs can be difficult to patch because of the sheer number of desktops in use. Recently vulnerabilities have been revealed in WinAmp, WinZip, and Apple Computer's iChat messaging program. The link for this article located at Matthew Broersma is no longer available. The link for this article located at Matthew Broersma is no longer available. The link for this article located at Matthew Broersma is no longer available. The link for this article located at Matthew Broersma is no longer available. . EEye Digital Security has uncovered new security holes affecting a wide range of RealNetworks' media. security, digital, uncovered, holes, affecting, range, realnetworks', media. . LinuxSecurity.com Team

Calendar%202 Oct 04, 2004 User Avatar LinuxSecurity.com Team Server Security
78

Microsoft: Internet Explorer 5 Exploit Risk From Source Code Leak

We have not covered much about the Microsoft source code leak that has been inundating the computer security news-sites recently, mostly because its not very relevant to open-source security. However, an exploit has been found due to the leak already. This brings up one of the major bonuses of open-source code: it does not at all depend on obscurity. Defense-by-obscurity leads to sloppy coding habits and opens the door to massive security vulnerabilities should the code be leaked, especially if its no longer supported, but still widely used, like Windows 9x. Bear in mind that, according to the Microsoft EULA, no one else is technically allowed to patch the code, and Microsoft likely won't . They might even claim that the ruling against them on the Java VM issue with Sun means that they cannot, since that was the reason given for dropping support for legacy products in the first place. . . .. A security company on Monday alerted clients of a new vulnerability to Internet Explorer 5, one attributed to the recent leak of Microsoft Corp. Windows source code. Microsoft confirmed the problem late in the day. A security company on Monday alerted clients of a new vulnerability to Internet Explorer 5, one attributed to the recent leak of Microsoft Corp. Windows source code. The quick attack appears to contradict some optimistic expectations that the recent leak of Windows 2000 and NT code would not pose a significant opportunity for hackers. In a statement released late on Monday, the company said it was investigating the reported exploit, but added that "This exploit is a known issue that Microsoft had discovered internally and addressed with the latest release of Internet Explorer--Internet Explorer 6.0 Service Pack 1." According to a message posted by SecurityGlobal.net LLC's Security Tracker Web site, a vulnerability was reported in Microsoft Internet Explorer Version 5 that lets a "remote user execute arbitrary code on the target system." A hacked bitmap file can trigger an integer overflow and executearbitrary code, the security bulletin said. The author of the warning said that this flaw was uncovered by reviewing the recently leaked Windows source code. The link for this article located at eweek.com is no longer available. . An issue found in Explorer 5 discloses risks stemming from exposed Microsoft code, underscoring lingering security gaps.. Internet Explorer Exploit, Microsoft Source Code Leak, Legacy Software Security. . LinuxSecurity.com Team

Calendar%202 Feb 17, 2004 User Avatar LinuxSecurity.com Team Vendors/Products
83

Sendmail And Snort Exploit Risks Reported: IT Threats Identified

Vulnerabilities have been uncovered in Sendmail and the Snort open source intrusion detection system IT departments suffered two serious vulnerabilities in enterprise-grade open source software systems last week. Top of the list was a newly reported vulnerability in Sendmail, which is a widely used mail transport agent (MTA). The second vulnerability was found in Snort, a popular open-source intrusion detection system (IDS). . . .. Vulnerabilities have been uncovered in Sendmail and the Snort open source intrusion detection system IT departments suffered two serious vulnerabilities in enterprise-grade open source software systems last week. Top of the list was a newly reported vulnerability in Sendmail, which is a widely used mail transport agent (MTA). The second vulnerability was found in Snort, a popular open-source intrusion detection system (IDS). Last week showed how quickly news of vulnerabilities can be exploited to produce software that wreaks havoc on the Net. Within 24 hours of the problems being made public, an easy-to-use exploit program for the Sendmail vulnerability was posted on the Bugtraq mailing list. According to Bugtraq, default installations of Sendmail and Red Hat Linux are not vulnerable to this particular exploit, but firms that have compiled Sendmail for use with Red Hat 7.1, 72 or 7.3 are vulnerable. The link for this article located at vnunet is no longer available. . Vulnerabilities have been uncovered in Sendmail and the Snort open source intrusion detection system. vulnerabilities, uncovered, sendmail, snort, source, intrusion, detection, system. . LinuxSecurity.com Team

Calendar%202 Mar 11, 2003 User Avatar LinuxSecurity.com Team Hacks/Cracks
77

Exploring Site Seal Misleading Facts And Real-World Security Threats

Secure site seals handed out to sites by certificate authorities and lock icons shown by browsers can often mislead consumers into believing that a site is more secure than it actually is, according to the latest Netcraft Web Server Survey.. . .. Secure site seals handed out to sites by certificate authorities and lock icons shown by browsers can often mislead consumers into believing that a site is more secure than it actually is, according to the latest Netcraft Web Server Survey. The survey said a recent dialogue between the two leading certificate authorities - Verisign and Geotrust has highlighted the fact that though the site seal and browser lock may look reassuring, there was no assurance at all that the site is not vulnerable to some well known exploit, and typically many are. It said the discovery of remote vulnerabilities in Microsoft Commerce Server and Microsoft-IIS published last month, had left many commerce and financial sites open to attack, and there was often no clear cut way in which a site's prospective customers can legally determine whether their transactions and data were likely to be safe or not. Due to these factors, Netcraft said it was likely that payment mechanisms on the Internet would increasingly become centralised. The survey also showed that IIS has made a gain of three percent in number of sites hosted on the Net due to the fact that register.com putting a Windows-based front end back in place on their domain parking system. It said register.com had alternated recently between a Windows and Linux front end, and this caused a fluctuation when it changed. All of article. . Secure site seals handed out to sites by certificate authorities and lock icons shown by browsers ca. secure, seals, handed, sites, certificate, authorities, icons, shown, browsers. . LinuxSecurity.com Team

Calendar%202 Jul 29, 2002 User Avatar LinuxSecurity.com Team Server Security
77

Apache Web Server: Insufficient Patch Update with Exploit Threat

Update: For millions of websites that were vulnerable care of ISS, Apache is not too happy. ISS (Internet Security Systems) released an insufficient patch along with their advisory to the Apache Web . . . . Update: For millions of websites that were vulnerable care of ISS, Apache is not too happy. ISS (Internet Security Systems) released an insufficient patch along with their advisory to the Apache Web Server. ISS believe that because Apache is open source, that the vulnerability need not be reported to the maintainers, only to the public. Apache's official advisory states specifically that the ISS patch does not correct this vulnerability. The CERT advisory gives a description of which platforms this vulnerability affects. ISS insists that this vulnerability is unexploitable. Apache.org's Mark Cox insists that if ISS had contacted Apache prior to making this vulnerability public, they would been able to gain a better understanding of the problem and realize that their fix was insufficient. The bug, which deals with invalid requests encoded using chunked encoding, can cause a child process to terminate and then restart. This uses a trivial amount of resources. A Slashdot.org posting asserts that ISS is using this Apache vulnerability as a press release. ISS's rebuttal is available here. There is no doubt that this assertion can be substantiated, but The Register believes that there may be something more to it than that. Has ISS ever tried something of this nature with Microsoft? The fix is now available httpd . Here is the message from Bugtraq telling you how to test if you need the patch or not. Threat becomes vulnerability: Now that the patch has been released and apache has been updated for all OS's affected, the exploits have been released. Ensure your version has been patched and give the exploits a try. The exploits are available here and here. Media References: Washington Post Problem is, they didn't tell the maker of the software. Then they issued the wrongprescription for fixing the problem... The Register On Monday, Internet Security Systems (ISS) posted their discovery to the BugTraq mailing list, without knowing the full extent of the flaw, and without giving Apache.org time to investigate and develop a patch or even propose a workaround. To sugar the pill... News.com The warning's release reopened a long-simmering debate over how much time a security researcher should give a software maker to verify and fix vulnerabilities that could affect large numbers of computer users... ZD Net Tech News The warning's release reopened a long-simmering debate over how much time a security researcher should give a software maker to verify and fix vulnerabilities that could affect large numbers of computer users... InfoWorld More than 63 percent of all Web sites run on an Apache Web server, according to Netcraft Ltd. of Bath, England, which compiles such information. The flaw is similar to... Version Specific References: Debian: /advisories/debian EnGarde: /advisories IBM AIX: https://www.ibm.com/solutions/servers Red Hat: /advisories/red-hat SuSe: /advisories/suse Slackware: /advisories/slackware Trustix: /advisories Conectiva: /advisories . Update: For millions of websites that were vulnerable care of ISS, Apache is not too happy. ISS (Int. update, millions, websites, vulnerable, apache, happy. . LinuxSecurity.com Team

Calendar%202 Jun 21, 2002 User Avatar LinuxSecurity.com Team Server Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200