Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -3 articles for you...
81

Twitter Data Breach: FTC Charges And Security Actions Taken

Social networking site Twitter on Thursday settled Federal Trade Commission charges that "serious lapses" in data security put its users at risk. The FTC in its administrative complaint (pdf) said these security lapses allowed hackers to obtain administrative control of Twitter and send out phony tweets from users including then-President-elect Barack Obama and Fox News. . The hackers were also able to gain access to nonpublic user information. The first security breach occurred in January 2009, when a hacker gained administrative control of Twitter after submitting thousands of guesses into Twitter's login webpage via an automatic password-guessing tool. The hacker eventually hit on the correct password (a "weak, lower case, common dictionary word," according to the FTC) and sent fraudulent tweets from user accounts. Among them: Obama, who offered his more than 150,000 Twitter followers $500 in free gasoline. In April 2009, a second breach occurred after a hacker accessed a Twitter employee's personal e-mail account and used information there to guess the employee's Twitter administrative password. Twitter on its corporate blog stressed the incidents were small in scale, noting "There were 45 accounts accessed in a January incident and 10 that April for short periods of time... Within hours of the January breach, we closed the security hole and notified affected account holders. We posted a blog post about it on the same day. In the April incident, within less than 18 minutes of the hack we removed administrative access to the hacker and we quickly notified affected users." Twitter also noted that the company at the time employed less than 50 people and was the "victim of an attack." . The hackers were also able to gain access to nonpublic user information. The first security breach o. social, networking, twitter, thursday, settled, federal, trade, commission, charges, 'serious. . LinuxSecurity.com Team

Calendar%202 Jun 25, 2010 User Avatar LinuxSecurity.com Team Privacy
83

Comprehensive Overview of Noteworthy Security Breaches and Hacks

Internet security returned to the forefront of Web issues this week, with a couple of high-profile hackings, security breaches, and an identity theft that involved the world's biggest software maker. Among the most prominent and potentially destructive were two digital certificates . . . . Internet security returned to the forefront of Web issues this week, with a couple of high-profile hackings, security breaches, and an identity theft that involved the world's biggest software maker. Among the most prominent and potentially destructive were two digital certificates that were mistakenly issued in Microsoft's name that could be used by virus writers to fool people into running harmful programs. According to Microsoft, someone posing as a Microsoft employee tricked VeriSign, which hands out so-called digital signatures, into issuing the two certificates in the software giant's name. Such certificates are critical for businesses and consumers who download patches, updates, and other pieces of software from the Internet, as they verify that the software is being supplied from a particular company such as Microsoft. The link for this article located at News.com is no longer available. . Cybersecurity threats emerge, spotlighting significant hacks and data leaks, with personal information compromise impacting large organizations.. Digital Certificates, Identity Theft, Internet Breaches, Hack Incidents, Web Security. . LinuxSecurity.com Team

Calendar%202 Mar 24, 2001 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200