Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The US government has successfully taken down a dark web site without any encryption backdoors, demonstrating that backdoors in communications systems which compromise cryptography for everyone are not necessary to combat crime. Learn more in a great Schneier on Security article: . The US Department of Justice unraveled a dark web child-porn website, leading to the arrest of 337 people in at least 18 countries. This was all accomplished not through any backdoors in communications systems, but by analyzing the bitcoin transactions andfollowing the money. Remember this the next time some law enforcement official tells us that they're powerless to investigate crime without breaking cryptography for everyone. The link for this article located at Schneier on Security is no longer available. . The Federal Bureau of Investigation dismantled a notorious online trafficking ring, resulting in 275 global detentions without compromising encryption.. Dark Web Dismantling, Bitcoin Investigation, Communications Security. . Brittany Day
In October, after Twitter refused to give a user information about how it tracks him when he clicks on links in tweets (as is the right of EU citizens under the newly passed, sweeping General Data Protection Regulation [GDPR] privacy law), Irish privacy authorities launched an investigation into the platform’s privacy practices. . Things could get hairier still, given the major privacy glitch Twitter disclosed on Thursday. The link for this article located at NakedSecurity / Sophos is no longer available. . Things could get hairier still, given the major privacy glitch Twitter disclosed on Thursday.The lin. october, twitter, refused, information, about, tracks, clicks. . LinuxSecurity.com Team
After interviewing over 60 people, ranging from former Facebook employees and partners, as well as reviewing over 270 internal Facebook documents, The New York Times discovered that Facebook offered its users’ data to more than 150 companies. Those companies, the investigation revealed, ranged from tech and entertainment companies to online retailers, automakers, and even banks.. Without first obtaining users’ permission, Facebook “allowed Spotify, Netflix and the Royal Bank of Canada to read, write and delete users’ private messages, and to see all participants on a thread.” It let Bing “see the names of virtually all Facebook users’ friends without consent.” Amazon could “obtain users’ names and contact information through their friends.” Yahoo could view streams of friends’ posts. The list goes on and on. The link for this article located at CSO Online is no longer available. . Without first obtaining users’ permission, Facebook “allowed Spotify, Netflix and the Royal Bank. interviewing, people, ranging, former, facebook, employees, partners. . LinuxSecurity.com Team
As detailed by the Politico report confirmed by US officials, the employees affected by the e-mail system hack were notified, but the alert sent also discloses the fact that the e-mail system containing classified information was not breached.. According to the breach alert sent to the State Department workforce there "is an ongoing investigation and we are working with partner agencies to conduct a full assessment. We will reach to any additional employees as needed." The link for this article located at Softpedia News is no longer available. . A security notification reveals an instance of employee data leakage within the Department of State, yet assures that no sensitive information was affected.. State Department Security, Data Breach Assessment, Employee Data Notification. . LinuxSecurity.com Team
Sometimes all it takes is one employee to spark a cybersecurity wildfire, as HealthEquity learned this week. The company, which handles more than 3.4 million health savings accounts, suffered a data breach when an unauthorized person accessed an employee's email account.. The incident took place on April 11 and was discovered two days later. When the company learned an employee's email was compromised, it removed access to the mailbox and hired a forensics firm to confirm the breach did not affect other HealthEquity systems. The link for this article located at DarkReading is no longer available. . The incident took place on April 11 and was discovered two days later. When the company learned an e. sometimes, takes, employee, spark, cybersecurity, wildfire, healthequity, learned. . LinuxSecurity.com Team
Privacy International has launched a new investigation into a swathe of shadowy data companies to see if they comply with the new EU General Data Protection Regulation (GDPR), which came into force today.. The GDPR has been several years in the making, and introduces strict new obligations for organizations on how they process and protect customer and employee data as well as how they seek consent for using that data. The link for this article located at InfoSecurity is no longer available. . The GDPR has been several years in the making, and introduces strict new obligations for organizatio. privacy, international, launched, investigation, swathe, shadowy, companies. . LinuxSecurity.com Team
To his family, he was former Eagle Scout Ross Ulbricht. To his housemates, he was . The prosecution The link for this article located at Forbes is no longer available. . Delve into the extraordinary saga of Charlie Shrem, the dark web marketplace, and a peculiar case that interlaces assassination with cryptocurrency.. Silk Road Crime, Bitcoin Theft, Dark Web Activities. . LinuxSecurity.com Team
Sources in the financial industry say they. Dairy Queen says it has no indication of a card breach at any of its thousands of locations, but the company also acknowledges that nearly all stores are franchises and that there is no established company process or requirement that franchisees communicate security issues or card breaches to Dairy Queen headquarters. The link for this article located at Krebs on Security is no longer available. . Dairy Queen says it has no indication of a card breach at any of its thousands of locations, but the. sources, financial, industry, dairy, queen, indication, breach. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.