Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 507
Alerts This Week
Warning Icon 1 507

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 0 articles for you...
74

Creating A Lightweight Network Monitoring Appliance With Ubuntu Jeos

My ambition was to implement a small (better tiny) appliance for monitoring network health and network resources, short and longtime trends, running under VMware Server or VMware ESX. So I had an eye upon all components which are implemented on the system, to be as leightweight as possible. This was also the reason why no SQL DBMS based software was used.. The appliance is based on Ubuntu Jeos LTS (8.04.3 at the time of this writing). Almost all used components are from the related repositories. This tutorial shows how the appliance was implemented. I do not issue any guarantee that this will work for you! Used components: Ubuntu 8.04.3 JeOS as OS Nagios 2.11 for monitoring and alarming Smokeping 2.3 to observe latencies and paketloss MRTG 2.14.7 to observe networktraffic's tendencies RRDTool 1.2.19 as Round-Robin Database for storing all measurement data Lighttpd 1.4.19 as fast, lightweight webserver frontend weathermap4rrd for illustrating the networkweather ssmtp as extremely lightweight MTA for maildelivery The link for this article located at HOWTO Forge is no longer available. . The appliance is based on Ubuntu Jeos LTS (8.04.3 at the time of this writing). Almost all used comp. ambition, implement, small, (better, tiny), appliance, monitoring, network, health, netwo. . Anthony Pell

Calendar%202 Sep 29, 2009 User Avatar Anthony Pell Network Security
74

Strategies To Prevent Data Leakage Using Monitoring And Rights Management

To stop data leakage, try a two-punch strategy that combines outbound content-monitoring tools with digital rights-management appliances. A disgruntled employee here, a careless one there, and just about any enterprise can find itself facing a mountain of trouble from confidential information made public. Help is at hand. Armed with increasingly sophisticated outbound-content monitors, information security officers finally have the weapons they need to conquer the threat of data leakage. . Does the IT staff represent a bigger security threat than business unit employees? Read the story, place a vote and share your opinion. Outbound-content monitoring - also known as data- or information-leakage prevention - came of age in the past year. The devices "have reached a state where they can be a fundamental part of everyone's network," says Josh Levine, managing director at Kita Capital Management, former CTO at E*Trade Financial and board member for device start-up Securify. The link for this article located at NetworkWorld is no longer available. . Learn effective techniques to prevent data breaches by employing a dual approach that merges surveillance solutions with access control systems.. Data Leakage Prevention, Monitoring Tools, Rights Management. . Bill Locke

Calendar%202 Mar 19, 2007 User Avatar Bill Locke Network Security
74

Exploring Insider Risks And Email Threats In Organizations

Most security breaches by insiders are unintentional. They come from employees who make ill-advised or uninformed choices regarding storage of their passwords, the Web sites they visit, and the E-mails they send. The Computing Technology Industry Association's annual survey on IT Security and the Workforce trends, to be published in March, indicates that nearly 80% of corporate security breaches are caused by computer-user error. . One in four outbound E-mails poses a legal, financial, or regulatory risk to the sending company, according to a 2005 survey conducted by Forrester Research and messaging security software maker Proofpoint Inc. of 332 IT executives and managers. Companies expect insider risks to grow, and nearly half of survey respondents plan to deploy technology to monitor Web mail or instant messaging to combat these threats. The link for this article located at Information Week is no longer available. . A significant fraction of emails sent externally—about a quarter—harbors potential legal, financial, or compliance risks for the originating organization, exposing concealed dangers.. Insider Risks, Email Threats, Monitoring Tools, Security Breaches, Password Safety. . Benjamin D. Thomas

Calendar%202 Jan 23, 2006 User Avatar Benjamin D. Thomas Network Security
81

EPIC Fights Hollywood Monitoring In Educational File Sharing

The Electronic Privacy Information Center is launching a counterattack against Hollywood's efforts to crack down on student file-swapping. The privacy advocacy group is sending letters to presidents of colleges across the country, asking them to think before they install monitoring . . . . The Electronic Privacy Information Center is launching a counterattack against Hollywood's efforts to crack down on student file-swapping. The privacy advocacy group is sending letters to presidents of colleges across the country, asking them to think before they install monitoring tools on university networks. "Monitoring the content of communications is fundamentally incompatible with the mission of educational institutions to foster critical thinking and exploration," EPIC wrote. "Monitoring chills behavior and can squelch creativity that must thrive in educational settings." EPIC's effort comes in response to attempts by the entertainment industry to pressure colleges into curtailing file swapping. Last month, the Recording Industry Association of America (RIAA) and the Motion Picture Association of America (MPAA) sent letters to more than 2,000 colleges, warning them that students were using school networks to trade illegal file copies. Although the letter did not overtly threaten legal action, it did ask the schools to make a "substantial effort" to stop such trading. The link for this article located at ZDNet is no longer available. . EPIC challenges the film industry's efforts to impose restrictions on student file-sharing by calling on educational institutions to oppose surveillance practices.. Educational Freedom, Digital Rights, Privacy Advocacy, Student File Sharing. . LinuxSecurity.com Team

Calendar%202 Nov 07, 2002 User Avatar LinuxSecurity.com Team Privacy
77

Implementing Process Accounting on BSD Systems with Lastcomm and SA

This document discusses implementing process accounting on a BSD system. The paths may be slightly different on a Linux system, but it's otherwise the same. "Over a year ago, I had an interesting job of tracking down how a root superuser . . . . This document discusses implementing process accounting on a BSD system. The paths may be slightly different on a Linux system, but it's otherwise the same. "Over a year ago, I had an interesting job of tracking down how a root superuser account vanished. Once I was on the system, it appeared that the issue was not malicious and I enjoyed the detective work tracking down the problem. I searched RADIUS accounting logs, httpd logs and process accounting logs and I was able to pin-point the problem (and the user) within seconds: a faulty CGI provided a way for the root account to be removed. One of the tools I used was lastcomm -- the command for showing last commands executed. This article covers the basics of enabling process accounting and shows a few examples of using lastcomm and sa to read and use the accounting data. These tools can help monitor user activity and system usage." See also the Process Accounting HOWTO The link for this article located at BSD Today is no longer available. . Implement process accounting on BSD to track user activity using `lastcomm` and `sa` commands for effective monitoring and analysis. Process Accounting, BSD, Lastcomm Command, User Tracking, System Monitoring. . LinuxSecurity.com Team

Calendar%202 Jan 15, 2001 User Avatar LinuxSecurity.com Team Server Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200