Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 513
Alerts This Week
Warning Icon 1 513

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -2 articles for you...
74

.Org DNSSEC Rollout: Global Initiatives and Internet Security Improvements

The march to secure the Internet's core DNS (define) infrastructure with DNSSEC (define) is moving forward. Since at least the summer of 2008, when security researcher Dan Kaminksy disclosed a critical vulnerability in DNS, the global Internet domain routing ecosystem has been moving to implement DNSSEC, which provides is a digitally signed mechanism to authenticate the integrity of DNS information, secure the system and prevent attacks.. Among the first generic Top Level Domains (gTLD) to first announce its plan to adopt DNSSEC was .Org back in September 2008. This week, .Org announced that its rollout of DNSSEC is now on track for deployment in June 2010. On a global basis, ICANN (Internet Corporation for Assigned Names and Numbers) reported that DNSSEC adoption in the root zone of the Internet is also going according to plan. "We are extremely pleased to witness the gaining momentum in DNSSEC development and adoption, ".Org CEO Alexa Raad told InternetNews.com. "All actors within the chain of trust -- registrars, ISPs and application providers -- now have a known lead time for development, and zero uncertainty about the future of DNSSEC." At the time of the original Kaminsky disclosure on DNS, some questioned whether DNSSEC was the appropriate remedy. That's no longer the case, as all of the major gTLDs, as well as multiple country code TLDs, domain registrars and ISPs are moving to implement the solution. The link for this article located at Enterprise Networking Planet is no longer available. . The implementation of DNSSEC at .Net demonstrates worldwide initiatives to fortify DNS systems, improving online security.. DNSSEC Adoption, ICANN Updates, Secure DNS, Domain Name System, Internet Security. . Alex

Calendar%202 Mar 16, 2010 User Avatar Alex Network Security
81

ICANN Highlights Risks of DNS Redirection to Third-Party Sites

The Internet Corporation for Assigned Names and Numbers on Tuesday condemned the practice of redirecting Internet users to a third-party Web site or portal when they misspell a Web address and type a domain name that does not exist.. Rather than return an error message for DNS requests for nonexistent domains, some DNS operators send back the IP address of another domain, a process known as NXDOMAIN substitution. The target address is often a Web portal or information site. The link for this article located at Network World is no longer available. . Rather than return an error message for DNS requests for nonexistent domains, some DNS operators sen. internet, corporation, assigned, names, numbers, tuesday, condemned, practice, redirec. . LinuxSecurity.com Team

Calendar%202 Nov 26, 2009 User Avatar LinuxSecurity.com Team Privacy
74

ICANN and VeriSign Outline DNSSEC Root Zone Security Strategy

Preparations for securing the domain name system root zone using the DNS Security Extensions (DNSSEC ) protocol are entering a key phase. At the 76th meeting of the Internet Engineering Task Force (IETF) in Hiroshima, the design team from VeriSign, the internet administration authority ICANN and the US NTIA presented the strict security conditions under which the various keys required will be generated, held and renewed. IETF developers expressed concern about the lack of channels for both explaining the DNSSEC rollout, scheduled to commence in January, to ISPs and for collecting reports of anything untoward from the ISPs.. In October, ICANN and VeriSign surprised many observers with their proposed timetable for DNSSEC root zone signing. Signatures will be used internally from as early as 1st December and the first root server will serve the zone to the outside world from January. Cryptographically secured DNSSEC signatures are intended to prevent DNS information from being changed en-route from sender to recipient. If a response comes from the wrong domain, this will be revealed by checking private against public keys. The link for this article located at H Security is no longer available. . The collaboration between ICANN and VeriSign regarding the deployment schedule for the DNSSEC root zone sparks concerns and obstacles related to cybersecurity.. DNS Security Extensions, Root Zone Signing, DNSSEC Implementation, ICANN, VeriSign. . Anthony Pell

Calendar%202 Nov 12, 2009 User Avatar Anthony Pell Network Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200