Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 523
Alerts This Week
Warning Icon 1 523

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -2 articles for you...
83

Upgraded BPFDoor Malware Compromises Linux Systems Undetected

Experts have recently discovered an upgraded version of the BPFDoor malware for Linux (opens in new tab) , that’s seemingly harder to spot - and aAs a result, no antivirus programs are still flagging the executable as malicious. . Cybersecurity researchers from Deep Instinct noted that BPFDoor, which was first discovered in 2022, has been active since at least 2017. The tool got its name from the (ab)use of the Berkley Packet Filter (BPF), which it uses to get instructions and bypass any firewalls. Its design allows the threat actors to remain undetected on a compromised Linux system for longer periods of time, it was said. BPFDoor’s key feature is allowing threat actors to see all network traffic and find vulnerabilities, as well as sending out remote code through (now) unfiltered and unblocked channels. . Researchers disclose an enhanced version of the BPFDoor malware targeting Linux, recognized for its ability to avoid antivirus measures and infiltrate devices.. BPFDoor Malware, Linux Cyber Threats, Network Intrusion Detection. . LinuxSecurity.com Team

Calendar%202 May 15, 2023 User Avatar LinuxSecurity.com Team Hacks/Cracks
74

Top 10 Linux/Unix Threats Reviewed by SANS Institute and FBI

For the past four years the SANS Institute has partnered with the FBI's National Infrastructure Protection Center to compile and publish its list of the most commonly exploited IT security vulnerabilities. This list is regularly updated and revised. Earlier, I examined the latest Windows threats from the list. Now I'll cover the top 10 Linux/Unix threats. . . .. For the past four years the SANS Institute has partnered with the FBI's National Infrastructure Protection Center to compile and publish its list of the most commonly exploited IT security vulnerabilities. This list is regularly updated and revised. Earlier, I examined the latest Windows threats from the list. Now I'll cover the top 10 Linux/Unix threats. It's important to recall that, unlike the ever-growing list of new exploits found in operating systems and applications, the SANS-FBI list prioritizes them according to the actual number of attacks seen by the organizations surveyed. The link for this article located at John McCormick is no longer available. . Explore the SANS Institute’s latest findings on critical vulnerabilities affecting Linux and Unix systems. Examine the shifting threat landscape and strategies for protection. Linux Security Threats, IT Security Vulnerabilities, SANS Threats, UNIX Exploits. . Anthony Pell

Calendar%202 Nov 22, 2004 User Avatar Anthony Pell Network Security
83

Understanding The Anna Kournikova Email Worm Impact On Linux Systems

This is exactly the type of thing that could happen to Linux. "The Anna Kournikova e-mail worm that whacked networks this week was not the work of a skilled cracker. It was created using one of the many virus-generating kits that . . . . This is exactly the type of thing that could happen to Linux. "The Anna Kournikova e-mail worm that whacked networks this week was not the work of a skilled cracker. It was created using one of the many virus-generating kits that are easily available on the Internet. The kits, which have names like Satanic Brain Virus Tools 1.0, Instant Virus Production Kit, and Ye Olde Funky Virus Generator, make writing a virus a straightforward and uncomplicated task. If you can install a program on a computer, you can also -- using one of these kits -- write and release a virus just like the authors of Cartman, Poppy and Kenny did. " The link at Wired is no longer available. . The rise of email worms like the Anna Kournikova worm underscores essential considerations for Linux systems' security and user practices against malware threats. Linux Threats, Email Worms, Malware Awareness. . LinuxSecurity.com Team

Calendar%202 Feb 15, 2001 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200