Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 11 articles for you...
214

Protecting Home Networks: Router Security Insights from 2024 Survey

In 2024, the connected world requires our homes to serve as hubs for various devices, from computers and smartphones to smart fridges and security cameras. Still, many home users remain unaware of the risk posed by default router security settings, as revealed in Broadband Genie's 2024 Router Security Survey results. . Understanding these vulnerabilities and securing home networks against cyberattacks are crucial to protecting yourself against attacks. I'll explain the notable findings of this survey and provide practical advice you can implement to improve the security of your home routers and Linux-based systems. Recent Survey Findings Serve as A Wake-Up Call Broadband Genie's 2024 survey, involving 3,045 respondents, has unearthed alarming statistics that highlight widespread negligence in router security: 52% Have Never Adjusted Any Router Factory Settings: More than half of the users leave their routers as issued straight out of the box. Factory settings are often generic and are publicly documented, making them an easy target for hackers. 86% Have Never Changed the Router Administrator Password: The admin password is a critical security feature, and leaving it at the default setting is akin to leaving the front door of your house unlocked. Shockingly, this percentage has increased slightly since 2022. 72% Have Never Changed Their Wi-Fi Password: Similar to the admin password, default Wi-Fi passwords are well-known and easily exploitable by unauthorized users. 89% Have Never Updated Their Router Firmware: Firmware updates often include critical security patches and performance enhancements, so routers that do not update firmware remain vulnerable to newer exploits. 89% Haven't Changed Their Network Name (SSID): Default network names can give away the router’s make and model, providing valuable information to hackers. 75% Haven't Checked Who Is Using Their Network: Regularly monitoring connected devices helps to identify unauthorized access and ensurethat only trusted devices are connected. 75% Don’t Know Why They Need to Adjust Router Settings: This highlights a significant gap in user awareness about the importance of router security. Securing Linux Routers: Tips to Protect Home Networks Linux routers, generally a Linux PC equipped with multiple Ethernet interfaces designed to route traffic between different networks, typically provide essential network services such as WiFi access for internal networks, proxy services to protect browsers within the network, and email and file sharing capabilities for the local LAN. Many Linux routers, particularly dedicated and purpose-built devices, are set up once and never updated. Unfortunately, these devices frequently retain their default settings, leaving them vulnerable to attacks. Additionally, these routers are typically not monitored for potential intrusions, allowing attackers to probe for vulnerabilities relentlessly until they successfully gain unauthorized access. Utilizing specific security practices can substantially reduce these risks. Here are the most crucial tips for securing Linux routers and home routers you need to know. Change Default Login Credentials Even though this might seem general, it is crucially important for Linux routers. Default credentials are easily guessed by threat actors. Change both the username and password upon the initial setup. Disable Unnecessary Services Linux routers may have various services enabled by default that aren't necessary for all users (e.g., FTP, Telnet). Disable any services you do not use to minimize the attack surface: sudo systemctl disable Update Router Firmware & OS Regularly Firmware updates often include security patches. Ensure you regularly check for and apply updates to your router’s firmware: # For Debian-based systems: sudo apt-get update && sudo apt-get upgrade # For Red Hat-based systems: sudo dnf update See our complete guide on upgrading your distro for more details on this process. Enable and Configure a Firewall If you're using Linux as a router, you likely have already installed and configured a firewall using tools like iptables, firewalld or ufw. Be sure to periodically check your firewall settings by performing an outside penetration test from a remote IP to determine which ports may be open inadvertently. Disable Remote Management Disabling remote management ports like SSH and HTTP/HTTPS access from the WAN side prevents unauthorized access: # Edit the SSH config file to bind to internal IP only sudo vim /etc/ssh/sshd_config # Change the 'ListenAddress' ListenAddress 192.168.1.1 Enable WPA3 for WiFi For routers providing WiFi services , ensure you use the latest WPA3 encryption standard. If WPA3 isn't available, WPA2 with a strong passphrase is the next best option. Change the Default IP Range Changing the default IP range of your LAN can help obscure your network structure from attackers who assume default configurations (e.g., 192.168.0.0/24): # Change IP range in your DHCP settings sudo vim /etc/dhcp/dhcpd.conf # Example change subnet 10.0.0.0 netmask 255.255.255.0 { ... range 10.0.0.10 10.0.0.100; } Use Intrusion Detection and Prevention Systems (IDPS) Implement an IDPS like Snort or Suricata to monitor and act upon suspicious activities: # Installation of Suricata sudo apt-get install suricata # Starting Suricata with a default rule set sudo suricata -c /etc/suricata/suricata.yaml -i eth0 Segment the Network with VLANs Create VLANs to segment and protect different parts of your network: # VLAN configuration example sudo ip link add link eth0 name eth0.10 type vlan id 10 sudo ip addr add 192.168.10.1/24 dev eth0.10 sudo ip link set up eth0.10 Monitor Logs Regularly Regularly monitor your router logs for any unusual activities. Setup log rotation if not already configured. Install Fail2ban - this tool monitors logs and bans IPs that show malicious signs (such as too many password failures). Install log monitoring tools like logwatch and logcheck to look for anomalies in system activity. By following these specific steps, users can significantly enhance the security of our Linux routers and keep our home networks protected from external threats. Our Final Thoughts on Improving Home Router Security The Broadband Genie 2024 Router Security Survey findings highlight a critical need for greater awareness and action regarding router security. By changing default settings and instilling proactive measures into home users' routines, we can significantly decrease our risk of cyberattacks. Likewise, for Linux-based systems, changing default settings regularly while updating software is integral in safeguarding their digital environments from cyberattacks. As technology develops further, so should our commitment to protecting home networks against ever-increasing threats. . Understanding router vulnerabilities is crucial for securing home networks against cyberattacks and enhancing safety.. connected, world, requires, homes, serve, various, devices, computers. . Anthony Pell

Calendar 2 Sep 25, 2024 User Avatar Anthony Pell IoT Security
210

Identifying Serious Security Vulnerabilities Present in Home Routers

Did you know that your router could be the biggest security hole in your network? . Many of the most popular home routers available to buy today feature a worrying number of security flaws and vulnerabilities, new research has found. A report from Fraunhofer Institute for Communication ( FKIE ) discovered that the firmware present in a large number of leading routers was susceptible to hugely damaging security issues. Many routers were found to never have received a single security firmware update in their lifetime, despite the risk that this could pose to users at home and at work, and were vulnerable to hundreds of well-known security issues. . Numerous widely-used residential routers contain significant vulnerabilities, putting both home and workplace users at risk.. Router Security, Home Network Risks, Firmware Vulnerabilities. . Brittany Day

Calendar 2 Jul 08, 2020 User Avatar Brittany Day Security Vulnerabilities
72

CUJO: Critical Security Advisory for Home Firewall Remote Code Execution

Security researchers have uncovered a swathe of serious vulnerabilities in a firewall system developed by CUJO which has been designed to prevent cyberattackers from infiltrating home networks. . The vulnerabilities were discovered by Claudio Bozzato from the Cisco Talos cybersecurity team. On Tuesday, the organization published an in-depth examination of the security flaws, which included critical remote code execution bugs. The link for this article located at ZDNet is no longer available. . Critical weaknesses uncovered in CUJO Smart Firewall endanger domestic networks. Remote command execution issues revealed.. CUJO Smart Firewall, Home Network Security, Cybersecurity Vulnerabilities. . Brittany Day

Calendar 2 Mar 20, 2019 User Avatar Brittany Day Firewalls
83

Dangers of Wireless Routers: Enhance Your Home Network Security

You've installed antivirus software on your computers, configured your operating system to update its security automatically and password-protected your Wi-Fi. So your home network is safe against hackers, right?. Guess again. And then take a long look at your wireless router. For years, manufacturers of home routers have all but ignored security issues, at least when it comes to making sure that consumers update their firmware to close exploitable vulnerabilities. Let's put it this way: Have you ever updated the firmware on your router? If not, odds are good that it's got one or more security holes through which a properly motivated hacker could slip. The link for this article located at Read Write Hack is no longer available. . Residential networks carry inherent security risks. Understand the threats posed by Wi-Fi routers and the critical need for regular firmware upgrades.. Wireless Router Risks, Home Network Safety, Firmware Update Best Practices. . LinuxSecurity.com Team

Calendar 2 Apr 18, 2013 User Avatar LinuxSecurity.com Team Hacks/Cracks
74

Exploring Privacy Versus Security in Home Wireless Networks

"I opened up my wireless home network to the world, and I've never felt more comfortable." Thus starts a startlingly different perspective on privacy and security. . . .. Last week, I turned off all the security features of my wireless router. I removed WEP encryption, disabled MAC address filtering and made sure the SSID was being broadcast loud and clear. Now, anyone with a wireless card and a sniffer who happens by can use my connection to access the Internet. And with DHCP logging turned off, there's really no way to know who's using it. What's wrong with me? Haven't I heard about how malicious wardrivers can use my connection from across the street to stage their hacking operations? How my neighbors can steal my bandwidth so they don't have to pay for their own? How I'm exposing my home network to attacks from the inside? Yup. So why am I doing this? In a word, privacy. By making my Internet connection available to any and all who happen upon it, I have no way to be certain what kinds of songs, movies and pictures will be downloaded by other people using my IP address. And more important, my ISP has no way to be certain if it's me. In mid-April, Comcast sent letters to some of its subscribers claiming that their IP addresses had been used to download copyrighted movies. Since Comcast is not likely to improve customer satisfaction and retention with this strategy, it's probable the letter was a result of pressure from the Motion Picture Association of America or one of its members. And to Comcast's credit, it stopped short of direct accusation; instead it gives users an out. Says the letter, "If you believe in good faith that the allegedly infringing works have been removed or blocked by mistake or misidentification, then you may send a counter notification to Comcast." That's good enough for me. I've already composed my reply in case I receive one of these letters someday. "Dear Comcast, I am so sorry. I had no idea that copyrighted works were being downloaded via my IP address; I have a wireless router athome and it's possible that someone may have been using my connection at the time. I will do my best to secure this notoriously vulnerable technology, but I can make no guarantee that hackers will not exploit my network in the future." The link for this article located at salon.com is no longer available. . Delving into the dangers of turning off home Wi-Fi protection and the journey toward achieving digital confidentiality.. Wireless Networking, Home Router Security, Online Privacy. . Anthony Pell

Calendar 2 May 19, 2004 User Avatar Anthony Pell Network Security
74

Strategies To Protect Your Home Wireless Network From Threats

If you have a wireless network set up in your home, you might be inviting criminals to steal from you without even having to break in. Wireless internet or Wi-Fi is becoming big business and computer users are lining up to buy the equipment that will allow them to use their laptop computers just about anywhere. . . .. If you have a wireless network set up in your home, you might be inviting criminals to steal from you without even having to break in. Wireless internet or Wi-Fi is becoming big business and computer users are lining up to buy the equipment that will allow them to use their laptop computers just about anywhere. It is important to know that there is always some risk in using computer networks. If you do not enable proper passwords and security measures on your system, you may be leaving the door open to someone looking to steal your personal information. The link for this article located at WXYZ is no longer available. . Uncover strategies to bolster your home Wi-Fi security and defend against online vulnerabilities.. Wireless Security, Home Network Protection, Cyber Threat Prevention. . Anthony Pell

Calendar 2 Mar 03, 2004 User Avatar Anthony Pell Network Security
74

Secure Your Home Network: Strategies Against Cyber Threats

The problem with having the signal broadcast though is that it is difficult to contain where that signal may travel. If it can get from upstairs to your office in the basement then it can also go that same 100 feet to your neighbors living room. Or, a hacker searching for insecure wireless connections can get into your systems from a car parked on the street. . . .. The problem with having the signal broadcast though is that it is difficult to contain where that signal may travel. If it can get from upstairs to your office in the basement then it can also go that same 100 feet to your neighbors living room. Or, a hacker searching for insecure wireless connections can get into your systems from a car parked on the street. That doesn't mean you shouldn't use wireless networking. You just have to be smart about it and take some basic precautions to make it more difficult for curiosity seekers to get into your personal information. The next section contains some simple steps you can take to secure your wireless network. . Fortify your home Wi-Fi system by implementing key measures to safeguard it from intruders and unwelcome access.. Wireless Network Protection, Cybersecurity Tips, Home Wireless Safety. . Anthony Pell

Calendar 2 Feb 12, 2004 User Avatar Anthony Pell Network Security
72

Lutel's Firewall 0.72: Robust IPtables and NAT Solution for Home Networks

Lutel's Firewall Script is a Linux IPtables shell script written in bash for use as a firewall and NAT/masquerade router for home networks or multiple subnets applications. It shares access to a internet connection from multiple workstations. It makes use of . . . . Lutel's Firewall Script is a Linux IPtables shell script written in bash for use as a firewall and NAT/masquerade router for home networks or multiple subnets applications. It shares access to a internet connection from multiple workstations. It makes use of the netfilter code in the 2.4 kernel and it is more robust and configurable than an equivalent IPchains script. The link for this article located at Help Net Security is no longer available. . Explore Lutel's Security Shield Script, a dynamic bash-driven utility for Unix systems that provides powerful firewall and NAT capabilities.. Lutel Firewall, IPtables, NAT, Linux Networking, Network Security. . Anthony Pell

Calendar 2 Oct 30, 2003 User Avatar Anthony Pell Firewalls
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here