Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Sir Tim Berners-Lee has defended his decision not to build in security at the onset of the world wide web. It. The link for this article located at The Register UK is no longer available. . Tim Berners-Lee articulates the rationale behind his decision to forgo the implementation of initial security measures on the web.. Web Security, Tim Berners-Lee, Internet Design, HTTP Protocol. . Alex
A long-known but little-discussed vulnerability in the modern Internet's design was highlighted yesterday by a report that hackers traced to Iran spoofed the encryption procedures used to secure connections to Google, Yahoo, Microsoft, and other major Web sites.. This design, pioneered by Netscape in the early and mid-1990s, allows the creation of encrypted channels to Web sites, an important security feature typically identified by a closed lock icon in a browser. The system relies on third parties to issue so-called certificates that prove that a Web site is legitimate when making an "https://" connection. The problem, however, is that the list of certificate issuers has ballooned over the years to approximately 650 organizations, which may not always follow the strictest security procedures. And each one has a copy of the Web's master keys. The link for this article located at CNET is no longer available. . An investigation uncovers that cybercriminals capitalized on a longstanding vulnerability in internet security protocols, endangering numerous prominent platforms.. encryption flaws, web security issues, cyber threats. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.