Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 498
Alerts This Week
Warning Icon 1 498

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 51 articles for you...
82

Addressing Software Supply Chains: Open Source Security Insights

In the wake of several major cybersecurity incidents - the most recent being the Colonial Pipeline ransomware attack, the government wants to shore up its software supply chain. There’s no silver bullet, but Open Source shows significant promise in meeting this challenge. . Recent intrusions into federal agencies and critical infrastructure are causing the government to more closely examine how software is made, in addition to who’s making it and where. Even before President Joe Biden and his transition team entered the White House amid the unfurling SolarWinds crisis, the executive branch was working to collectively reduce weaknesses in the government’s software supply chain. A new executive order gets deeper into core software development techniques than anything from previous administrations. . Recent incidents involving federal agencies underscore vulnerabilities within government software supply chains, prompting an examination of open-source threats.. Software Supply Chain, Open Source Security, Cybersecurity Threats, Software Integrity. . Brittany Day

Calendar%202 May 19, 2021 User Avatar Brittany Day Government
81

China's Data Security Framework: A New Global Standard Amid Tensions

As tensions between the U.S. and China heighten over data security issues, the Chinese government has taken a proactive step to protect users' privacy with a data security initiative that it believes can serve as “a global standard for data security”. . The Chinese State Councilor and Foreign Minister Wang Yi, appearing in a video during a closed-door meeting in Beijing on Tuesday, announced the eight-part framework that touches on contentious topics such as Beijing’s handling of user data. Per the rules laid out by the initiative, Beijing will not ask Chinese companies to transfer overseas data to the government in breach of other countries’ laws. China also calls on states to oppose mass surveillance against other states and asks companies to refrain from installing backdoors in their products and services for illegal data collection. . The Chinese Foreign Minister announced a new initiative for data security, intending to establish a universal benchmark as international tensions escalate.. Global Data Standards, China Data Security, Privacy Protection Policy. . LinuxSecurity.com Team

Calendar%202 Sep 08, 2020 User Avatar LinuxSecurity.com Team Privacy
81

Germany Changes Tack on COVID-19 Tracing: Emphasis on Privacy Protection

Germany officials have changed their stance on a centralized coronavirus tracing app, now favoring a privacy-protecting alternative. . Germany has changed its stance on the centralization of data generated from mobile apps designed to help combat COVID-19 . Until recently, German officials have backed the idea of a mobile app that would generate geolocation information, including where a user goes and who they meet, of which this data would be stored centrally. The problem with this concept, and one criticized by civil rights and privacy groups, is that the vast collection of citizen data could pave the way for future surveillance on a scale never before seen in the West, as this information would be accessible by groups potentially including government departments -- or, perhaps, law enforcement. . Germany has transitioned from a centralized approach in its COVID-19 tracking application to a more privacy-oriented model that safeguards individual data.. privacy app, COVID-19, data centralization, mobile application. . LinuxSecurity.com Team

Calendar%202 Apr 27, 2020 User Avatar LinuxSecurity.com Team Privacy
81

India Plans Unrestricted Access To Non-Personal Data Under New Bill

The Indian government is planning to gain unrestricted access to non-personal data of people in India, according to a report byTech2.Non-personal data is anonymized data which can’t be traced back to identify a person. For example, weather sensors without a specific location or e-Commerce data without personal identification. What are your thoughts on this initiative and its privacy implications? Learn more in a great The Next Web article: . This comes on the heel of the data privacy bill, which is listed to be tabled in the winter session ofparliament. Apart from access to non-personal data, the bill will also tackle topics such as intermittent liability of social media platforms, and data localization and storage issues. A government source told the publication that authorities should be able to regulate how, when, and where non-personal data is being used: The thought process of the government is that it should have access to all non-personal, aggregate and anonymized data at all times and on-demand. The data doesn’t necessarily need to be stored with the government but it should be able to regulate how, when and where the data is being used. The move is also influenced by an upcoming report on non-personal data handling by a committee headed by Infosys co-founder Kris Gopalakrishnan. The link for this article located at The Next Web is no longer available. . This follows closely behind the anticipated environmental regulation, which is set to be introduced during the upcoming spring meeting.. unrestricted data access, data privacy bill, non-personal data regulation. . LinuxSecurity.com Team

Calendar%202 Nov 28, 2019 User Avatar LinuxSecurity.com Team Privacy
81

India's Facial Recognition System Draws Privacy Concerns From Citizens

The Indian government has played down fears of mass surveillance in response to concerns that its proposed facial recognition system lacks adequate oversight. What are your thoughts on this system and the privacy concerns surrounding it? Learn more in a great The Next Web article: . Replying to a legal notice filed by the Internet Freedom Foundation (IFF), a Delhi-based non-profit that works on digital liberties, the country’s National Crime Record Bureau (NCRB) defended the move, stating it doesn’t interfere with privacy of citizens as it “only automates the existing police procedure of comparing suspects’ photos with those listed in LEA’s [Law Enforcement Agency] databases.” It also dismissed concerns of misidentification and discriminatory profiling, and said the project will only be used to identify missing people and unidentified dead bodies. The link for this article located at The Next Web is no longer available. . India's National Crime Records Bureau stands by its facial recognition initiative, addressing the privacy worries voiced by the public.. India Facial Recognition, Digital Liberty, Privacy Rights, Government Surveillance. . LinuxSecurity.com Team

Calendar%202 Nov 11, 2019 User Avatar LinuxSecurity.com Team Privacy
81

Surveys Show Strong Demand for Federal Data Privacy Regulations

Over two thirds of US consumers think the Government should do more to protect data privacu, and say they're ready for federal regulation similar to GDPR. . A recent survey from Cary, NC-based software analytics company SAS has been asking what data protection measures consumers want. The link for this article located at ZDNet is no longer available. . A significant majority of American shoppers are advocating for the implementation of stricter data privacy laws, highlighting a clear call for reform.. Data Protection, Consumer Privacy, Federal Regulation, GDPR Compliance. . LinuxSecurity.com Team

Calendar%202 Jan 22, 2019 User Avatar LinuxSecurity.com Team Privacy
82

Government Vulnerabilities Equities Process for Disclosure Review

After more than a year of legal wrangling, the federal government has agreed to hand over its policy on vulnerability use and disclosure. The government had said that the policy was classified and too sensitive to release, but relented late last week and sent the document to the EFF, albeit a heavily redacted version. . Know as the Vulnerabilities Equities Process, the document outlines the criteria that the government uses when deciding whether to keep information about vulnerabilities discovered by the government or its contractors private. The 13-page policy applies to a variety of hardware and software, including government-built systems, commercial systems, SCADA systems, and ICS systems. . The Risk Management Protocol establishes guidelines for governing the handling and reporting of security flaws.. Vulnerability Management, Government Policy, Disclosure Guidelines. . Anthony Pell

Calendar%202 Sep 10, 2015 User Avatar Anthony Pell Government
81

Digital Rights Coalition Calls for Obama to Veto Cybersecurity Act

U.S. President Barack Obama should oppose legislation intended to let businesses share cyberthreat information with each other and with government agencies because the bill would allow the sharing of too much personal information, a coalition of digital rights groups and security experts said.. The coalition of 39 digital rights and privacy groups and 29 security experts urged Obama to threaten to veto the Cybersecurity Information Sharing Act (CISA), a bill that may come to the Senate floor for a vote by early August. CISA would protect from customer lawsuits those businesses that share cyberthreat information. The link for this article located at CSO Online is no longer available. . The coalition of 39 digital rights and privacy groups and 29 security experts urged Obama to threate. president, barack, obama, should, oppose, legislation, intended, businesses, share, cyberthreat. . LinuxSecurity.com Team

Calendar%202 Jul 30, 2015 User Avatar LinuxSecurity.com Team Privacy
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200