Alerts This Week
Warning Icon 1 562
Alerts This Week
Warning Icon 1 562

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 9 articles for you...
83

Understanding Malware Risks From Free Download Manager on Linux

We do not often talk about Linux malware because it is often quickly patched up and not exploited much in the wild compared to Windows/macOS. However, there has been a concern regarding the Free Download Manager (a decently popular cross-platform download manager). . While we do not recommend it on our available for Linux, some of our readers have suggested it in the past. And I have used it as well up until now on Windows. So, what is the issue? Free Download Manager is not malware . However, a malicious package for Linux was found, distributed as Free Download Manager. Security researchers at Kaspersky discovered that it existed for at least two years ( 2020-2022 ) without users knowing what they were installing. . Uncover the issues related to Free Download Manager and the potential threats posed by malware for Linux users. Keep yourself updated!. Linux Malware, Security Issue, Download Manager, Cyber Threats, User Concerns. . LinuxSecurity.com Team

Calendar 2 Sep 13, 2023 User Avatar LinuxSecurity.com Team Hacks/Cracks
210

Wireshark Security Alert: Malware Risk From Packet Capture Files

Maliciously constructed Wireshark packet capture files might be used to distribute malware , providing recipients can be tricked into double clicking file URL fields. A CVE has been assigned to the security issue (now resolved through a recent update) due its potential for harm, despite the fact that some social engineering trickery is required. . Variants of the same attack could potentially be thrown against users of the popular network security tool, widely used by security analysts and penetration testers, whether they use Windows or Xubuntu Linux-based systems. The attack, discovered by security researcher Lukas Euler of Positive Security , is explained in a recent post on GitLab that features proof-of-concept videos. Even though developers of Wireshark normally avoid asking for a CVE to be created for potential security issues that require user interaction, an exception was made in this case because of the “low barrier to entry and level of control” an attacker might gain. The issue, tracked as CVE-2021-22191 , was resolved through a recent update. . Alterations of a breach could target individuals employing popular cybersecurity solutions, increasing the dangers of malware propagation.. Network Attack Vectors, Wireshark Security Risks, Malware Distribution. . Brittany Day

Calendar 2 Mar 16, 2021 User Avatar Brittany Day Security Vulnerabilities
77

NCSC Security Advisory: DNS Hijacking Attacks on Home Routers

Have you heard that the NCSC has warned about DNS hijacking threats focusing on home routers? These attacks aim to modify the settings on home routers, potentially via cross-site request forgery (CSRF) web-based attacks, so that they use rogue DNS servers. The end goal is to secretly redirect the user to a phishing page or one capable of installing malware on their machine. . The UK’s National Cyber Security Centre (NCSC) has issued a warning about DNS hijacking threats, as reports emerge of widespread attacks in Brazil affecting 180,000 users. The NCSC posted the advisory on Friday as a follow-up to one issued in January. DNS hijacking attackers typically take control of an authoritative DNS server, change the entries stored there and in so doing covertly redirect users to servers under their control, in a Man in the Middle attack. The link for this article located at InfoSecurity is no longer available. . The UK’s Cyber Security Agency (NCSA) alerts users to potential DNS spoofing risks affecting residential routers, stressing the vulnerabilities involved.. DNS Hijacking, Home Router Attack, NCSC Security Alert, Cybersecurity Threats, Malware Redirection. . LinuxSecurity.com Team

Calendar 2 Jul 16, 2019 User Avatar LinuxSecurity.com Team Server Security
83

The Risks Of Browser Extensions And The Privacy Threats They Pose

Your internet browser is a doorway to your computer. Everyday users are installing all manner of browser extensions—small pieces of software that live inside Chrome or Firefox—to optimize their workflow, block ads, or otherwise improve their web experience.. Nearly half of all users of Chrome on desktop use extensions. But some of these add-ons, the access they have, and the supply chain around them, are increasingly being leveraged by hackers to break into millions of peoples’ computers, and inject unwanted adverts, steal passwords, and siphon other sensitive information. The link for this article located at Motherboard is no longer available. . A significant portion of users on the Chrome browser opt to add extensions; however, these plugins can inadvertently allow cybercriminals access to sensitive information. Discover how!. Browser Extensions, Security Risks, User Privacy. . LinuxSecurity.com Team

Calendar 2 Nov 15, 2018 User Avatar LinuxSecurity.com Team Hacks/Cracks
79

Bluetooth Attack on Fitbit: Security Risks and Data Exploits

This is impressive: "An attacker sends an infected packet to a fitness tracker nearby at bluetooth distance then the rest of the attack occurs by itself, without any special need for the attacker being near," Apvrille says. . "[When] the victim wishes to synchronise his or her fitness data with FitBit servers to update their profile ... the fitness tracker responds to the query, but in addition to the standard message, the response is tainted with the infected code. . '[When] the victim wishes to synchronise his or her fitness data with FitBit servers to update their. impressive, attacker, sends, infected, packet, fitness, tracker, nearby, bluetooth. . LinuxSecurity.com Team

Calendar 2 Mar 14, 2017 User Avatar LinuxSecurity.com Team Security Projects
77

Assessing Administrative Permissions to Reduce Malware Threats Effectively

A new study shows that CSOs could dramatically lower the risk of malware infection by becoming a lot stingier with the number of company employees given administrator accounts on computers. . The study released Tuesday by enterprise security vendor Avecto indicates that it's time for CSOs to evaluate the use of admin privileges and restrict their use only when required for certain tasks. The link for this article located at Network World is no longer available. . The study released Tuesday by enterprise security vendor Avecto indicates that it's time for CSOs to. study, shows, dramatically, lower, malware, infection, becoming. . LinuxSecurity.com Team

Calendar 2 Feb 20, 2014 User Avatar LinuxSecurity.com Team Server Security
78

HP LaserJet Pre-2009: Class Action Over Remote Firmware Risks

Goldblatt is the lead plaintiff in a class action lawsuit, filed Thursday against HP in California, claiming that the IT giant should have warned customers about the flaws ahead of time.. In a nutshell, the flaw is a pretty bad one. HP LaserJet printers built before 2009 will accept remote firmware updates without properly checking where they come from. This means that The link for this article located at Wired is no longer available. . A collective legal action asserts that HP deceived consumers regarding defects in LaserJet printers manufactured before 2009, posing significant dangers.. HPLaserJet, Printer Security, Firmware Update, Malware Risk, Class Action. . LinuxSecurity.com Team

Calendar 2 Dec 06, 2011 User Avatar LinuxSecurity.com Team Vendors/Products
77

EC2 Security Concerns: Unauthorized Access And Malware Risks

Using Amazon's EC2 (Elastic Compute Cloud) can pose a security threat to organizations and individuals alike, though Amazon's not to blame, according to researchers from Eurecom, Northeastern University, and SecludIT. . Rather, third parties evidently are not following best security practices when using preconfigured virtual machine images available in Amazon's public catalog, leaving users and providers open to such risks as unauthorized access, malware infections, and data loss. The researchers say similar security vulnerabilities may be present in other public clouds from such providers as Rackspace, IBM, Joyent, and Terremark. The underlying message is that for all the power and opportunity of public clouds, providers and users alike need to approach with caution and embrace best security practices. Cloud infrastructure providers can't be expected to assess the security of every image, bit, and transaction that occurs on their machines any more than an apartment landlord can be responsible for everything that happens within his or her complex -- that is, what tenants do behind closed doors in the spaces they rent. The link for this article located at InfoWorld is no longer available. . Rather, third parties evidently are not following best security practices when using preconfigured v. using, amazon', (elastic, compute, cloud), security, threat, organizations, individua. . LinuxSecurity.com Team

Calendar 2 Nov 10, 2011 User Avatar LinuxSecurity.com Team Server Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here