Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 561
Alerts This Week
Warning Icon 1 561

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Are host-based firewalls still worth using?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/158-are-host-based-firewalls-still-worth-using?task=poll.vote&format=json
158
radio
0
[{"id":510,"title":"Yes \u2014 every server needs one.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":511,"title":"No \u2014 perimeter and cloud security are enough.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":512,"title":"Only Internet-facing systems really benefit.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":513,"title":"iptables.conf is my security policy.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -2 articles for you...
83

Trojan Malware Compromises Banks: Over $1 Million Stolen from U.K. Accounts

Consumers and businesses in Great Britain have lost more than $1 million so far this summer from a Trojan that is infecting their computers, prompting them to log into their bank accounts, and then is surreptitiously transferring money to scammers in other countries, security researchers said on Tuesday.. About 3,000 bank accounts were found to be compromised at one financial institution, which was not identified, according to a white paper released by M86 Security. The multilevel scheme uses a combination of a new version of the Zeus keylogger and password stealer Trojan, which targets Windows-based computers and runs on major browsers, and exploit toolkits to get around anti-fraud systems used at bank Web sites, the report found. Bank sites that offer two-factor authentication, such as one-time passcodes and ID tokens, are ineffective because the malware has taken over the browser after the victim has logged into the banking site, Bradley Anstis, vice president of technology strategy at M86 Security, told CNET. The link for this article located at CNET is no longer available. . About 3,000 bank accounts were found to be compromised at one financial institution, which was not i. consumers, businesses, great, britain, million, summer. . LinuxSecurity.com Team

Calendar%202 Aug 11, 2010 User Avatar LinuxSecurity.com Team Hacks/Cracks
67

Risks Associated With Image-Based Keyboards And Trojan Phishing

Recently, I stumbled upon this which nicely showed how a Trojan horse can, utilizing a key stroke capture and screenshot capture, grab a user. The link for this article located at SecuriTeam is no longer available. . Image-based virtual keyboards are popular security tools but can pose risks like phishing. Trojans may exploit them to capture keystrokes and steal personal data.. Image-Based Keyboards, Trojan Threats, Keylogging Risks. . LinuxSecurity.com Team

Calendar%202 Nov 28, 2006 User Avatar LinuxSecurity.com Team Cryptography
78

Debian Critical Alert: Rootkits and Keylogging Risks Leveraging Privileges

Things got pretty exciting in the Linux world recently, when the Debian Linux distribution announced that a cracker had broken in to four debian.org machines, escalated privileges to root, and installed rootkits on several of the servers.. . .. Things got pretty exciting in the Linux world recently, when the Debian Linux distribution announced that a cracker had broken in to four debian.org machines, escalated privileges to root, and installed rootkits on several of the servers. The method? The cracker used keylogging software to sniff the password of a user authorized to log in to one of the servers on Wednesday, 19 November 2003, then logged in and took advantage of a vulnerability in the Linux kernel to escalate to root. After that, it was a short time before the other machines were compromised as well. Further details about the exploit are available in a number of places, including Linux Today and wiggy.net. Let's cut to the question many readers probably have: if you use Linux, should you be worried? Well, yes and no. The vulnerability used in the privilege escalation affects all versions of the Linux kernel prior to 2.4.23 (or 2.5.69 if you're running that series of the kernel, or 2.6.0-test6 if you're using the absolute latest and greatest). And that's from all vendors, including Debian, Red Hat, Mandrake, Slackware, and SUSE. However, in order to exploit the vulnerability, the cracker first must have a local account on the machine, with shell access. In other words, the bad guys can't just force their way into any old Linux box, unless they first can login as a user onto that box. The link for this article located at is no longer available. . Things got pretty exciting in the Linux world recently, when the Debian Linux distribution announced. linux, things, pretty, exciting, world, recently, debian, distribution, announced. . LinuxSecurity.com Team

Calendar%202 Dec 09, 2003 User Avatar LinuxSecurity.com Team Vendors/Products
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Are host-based firewalls still worth using?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/158-are-host-based-firewalls-still-worth-using?task=poll.vote&format=json
158
radio
0
[{"id":510,"title":"Yes \u2014 every server needs one.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":511,"title":"No \u2014 perimeter and cloud security are enough.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":512,"title":"Only Internet-facing systems really benefit.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":513,"title":"iptables.conf is my security policy.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200