Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 523
Alerts This Week
Warning Icon 1 523

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 0 articles for you...
67

Understanding Export Regulations for Open Source Encryption Applications

I received a phone call today from a lady with the U.S. Bureau of Export Administration (BXA) who'd read my AEScrypt page (the URL of which I'd submitted to them for an export license exemption as required by U.S. . . . . I received a phone call today from a lady with the U.S. Bureau of Export Administration (BXA) who'd read my AEScrypt page (the URL of which I'd submitted to them for an export license exemption as required by U.S. export regulations). aescrypt is of course Open Source. She wished to remind me that any application built using Open Source encryption components had to also be submitted to the BXA for the proper export license or license exemption if the application was to be exported. The export license for the component covers only the component, not applications that use the component. The fact that the component itself is Open Source and thus may be freely exported does not matter. Hopefully this reminder will prevent problems on the part of those who use AEScrypt or other Open Source encryption components as part of a larger application. -Eric The link for this article located at LinuxToday/Eric Green is no longer available. . An examination of open-source cryptographic modules and the associated export control regulations, including an analysis of adherence to legal standards.. Open Source Encryption,AEScrypt Compliance,Export Licensing,Encryption Technology. . LinuxSecurity.com Team

Calendar%202 Oct 10, 2023 User Avatar LinuxSecurity.com Team Cryptography
82

Neopoint Inc.: $95,000 Fine for Illegal Crypto Exports to Korea

The federal body that regulates exports has fined San Diego firm Neopoint Inc. $95,000 for exporting strong encryption software to Korean companies without the necessary government approval. The Commerce Department's Bureau of Export Administration imposed the fine after learning that Neopoint . . . . The federal body that regulates exports has fined San Diego firm Neopoint Inc. $95,000 for exporting strong encryption software to Korean companies without the necessary government approval. The Commerce Department's Bureau of Export Administration imposed the fine after learning that Neopoint had exported 128-bit encryption software to two companies in South Korea without obtaining proper licenses. U.S. export regulations set limits on the strength of encryption software that can be sold to foreign buyers without government approval. "This case demonstrates that the U.S. Government can and will enforce its export controls on encryption products," Assistant Secretary of Commerce for Export Enforcement Michael J. Garcia said in a prepared statement. The link for this article located at Newsbytes is no longer available. . The federal body that regulates exports has fined San Diego firm Neopoint Inc. $95,000 for exporting. federal, regulates, exports, fined, diego, neopoint, exporting. . Anthony Pell

Calendar%202 Feb 27, 2002 User Avatar Anthony Pell Government
67

Duo Arrested in Illicit Defense Encryption Technology Trade

U.S. Customs Service agents have arrested two men for allegedly attempting to export military-grade encryption technology to China. Authorities on Tuesday arrested Eugene You Tsai Hsu, of Blue Springs, Mo., and David Tzu Wvi Yang, of Temple City, Calif., accusing the . . . . U.S. Customs Service agents have arrested two men for allegedly attempting to export military-grade encryption technology to China. Authorities on Tuesday arrested Eugene You Tsai Hsu, of Blue Springs, Mo., and David Tzu Wvi Yang, of Temple City, Calif., accusing the two of plotting to export an encryption technology designed for use exclusively by the U.S. government. A customs spokesman would not confirm whether the KIV-7HS encryption unit in question has ever been used outside of the U.S. government or exported to any other nations, saying only that the communications encryption device cannot be legally exported from the United States without permission from the State Department. The link for this article located at ComputerUser is no longer available. . U.S. Customs Service agents have arrested two men for allegedly attempting to export military-grade . customs, service, agents, arrested, allegedly, attempting, export, military-grade. . LinuxSecurity.com Team

Calendar%202 Aug 31, 2001 User Avatar LinuxSecurity.com Team Cryptography
67

US Encryption Export Policy Update: Effects on EU and Allied Countries

The United States on Monday announced an update to its encryption export policy affecting companies that sell encryption software to users in the 15 European Union nations and in eight other countries that are U.S. allies. . The United States on Monday announced an update to its encryption export policy affecting companies that sell encryption software to users in the 15 European Union nations and in eight other countries that are U.S. allies. The link for this article located at InfoWorld is no longer available. . The United States on Monday announced an update to its encryption export policy affecting companies . united, states, monday, announced, update, encryption, export, policy, affecting, companies. . LinuxSecurity.com Team

Calendar%202 Jul 17, 2000 User Avatar LinuxSecurity.com Team Cryptography
67

Improvements Needed in Encryption Regulations by William Reinsch

William Reinsch, the Commerce Department's undersecretary for export administration, told technology executives on Tuesday that while the administration's new encryption export regulations appeared to be a huge improvement over prior iterations of the policy, a few cracks are starting to . . .. William Reinsch, the Commerce Department's undersecretary for export administration, told technology executives on Tuesday that while the administration's new encryption export regulations appeared to be a huge improvement over prior iterations of the policy, a few cracks are starting to emerge in its foundations. The link for this article located at ComputerUser is no longer available. . William Reinsch highlights the need to modernize encryption export regulations, advocating for a flexible approach to support innovation and national security. Encryption Compliance, Data Security Measures, Technology Regulations. . LinuxSecurity.com Team

Calendar%202 May 04, 2000 User Avatar LinuxSecurity.com Team Cryptography
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200