Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 491
Alerts This Week
Warning Icon 1 491

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 33 articles for you...
74

WSL2 Bypasses Windows Firewall: Security Risk for VPN Users

The Windows Subsystem for Linux 2 will bypass the Windows 10 firewall and any configured rules, raising security concerns for those who use the feature - the main concern being a lack of awareness of this change. . In a blog post today, Mullvad VPN explained that their product includes an 'Always require VPN' option that blocks Internet access via the Windows Firewall unless connected to the VPN. After Mullvad received a tip from a user, it was determined that WSL2 Linux distributions bypass the Windows 10 firewall and its configured rules, and prevent the VPN's 'Always require VPN' security feature from working. . In a blog post today, Mullvad VPN explained that their product includes an 'Always require VPN'. windows, subsystem, linux, bypass, firewall, configured, rules. . Brittany Day

Calendar%202 Oct 02, 2020 User Avatar Brittany Day Network Security
82

Georgia Cybersecurity Bill Sparks National Debate on Digital Boundaries

In March, the Georgia State General Assembly passed a bill that would make it illegal to access a computer or network "without authority." Georgia Governor Nathan Deal has until Tuesday to decide whether to sign it into law or veto it.. The 40-day limbo has morphed from a bureaucratic formality, though, into a heated debate with national implications. In just 43 lines, the bill raises fundamental questions about how to establish boundaries in cyberspace without hindering vital security research and, crucially, the ethics of "hacking back," in which institutions that have been attacked can digitally pursue the hackers and even potentially retaliate. The link for this article located at Wired is no longer available. . The intense discussion surrounding a recent Florida proposal brings forward significant issues regarding data protection and moral dilemmas in the cyber intrusion realm.. Georgia Legislation, Cybersecurity Policy, Hacking Ethics, Digital Retaliation, Network Access Issues. . Brittany Day

Calendar%202 May 05, 2018 User Avatar Brittany Day Government
83

Mitigating Third-Party Risks for Stronger Enterprise Security

It is said that an enterprise is only as secure as its weakest link. Today, that weak link often turns out to be partners, suppliers, and others with persistent network and application access.. These weak links have certainly placed third-party security into the spotlight. As we The link for this article located at CSO Online is no longer available. . These weak links have certainly placed third-party security into the spotlight. As weThe link for th. enterprise, secure, weakest, today, often. . LinuxSecurity.com Team

Calendar%202 Jul 29, 2014 User Avatar LinuxSecurity.com Team Hacks/Cracks
82

NSA Surveillance of System Administrators: Hacking and Tracking Tactics

Across the world, people who work as system administrators keep computer networks in order . According to a secret document provided by NSA whistleblower Edward Snowden, the agency tracks down the private email and Facebook accounts of system administrators (or sys admins, as they are often called), before hacking their computers to gain access to the networks they control. The link for this article located at First Look is no longer available. . The NSA employs advanced techniques to monitor system administrators, analyzing their digital behaviors to detect vulnerabilities and unauthorized actions. NSA Covert Operations,System Admin Surveillance,Cybersecurity Threats. . Dave Wreski

Calendar%202 Mar 21, 2014 User Avatar Dave Wreski Government
79

Exploring Linux Security Tools For Data Protection And Access Control

Back when we were kids, "security" meant little more than having a secret password to keep little siblings out of the treehouse. That's still the case in some situations. Take the title of this column, for instance. If you go to the #linuxjournal IRC channel on FreeNode, saying "Lapsang Souchong" will mark you as part of the inner circle. (Note, this does not make you one of the cool kids...possibly the exact opposite!). When it comes to computer security, however, things are quite a bit more complex. Whether you want to encrypt your data or lock down network access, Linux provides a wide variety of security tools. This month, we focus on using those tools in our Security issue. The link for this article located at Linux Journal is no longer available. . Delve into intricate cybersecurity strategies within Linux, emphasizing resources for safeguarding information and controlling network entry. Learn further!. Linux Security Tools, Data Protection Techniques, Network Access Control. . LinuxSecurity.com Team

Calendar%202 Jan 07, 2014 User Avatar LinuxSecurity.com Team Security Projects
83

Bypass China's Great Firewall With Raspberry Pi VPN Setup

A tech-savvy China-based Redditor has spotted a hassle-free way of ensuring he or she is always able to bypass the Great Firewall, even when out and about, using the Raspberry Pi to connect to a virtual private network (VPN).. VPNs are a necessity for foreigners living in the People The link for this article located at The Register UK is no longer available. . VPNs are a necessity for foreigners living in the PeopleThe link for this article located at The Reg. tech-savvy, china-based, redditor, spotted, hassle-free, ensuring, always. . LinuxSecurity.com Team

Calendar%202 May 29, 2013 User Avatar LinuxSecurity.com Team Hacks/Cracks
81

Tor 0.2.3.4-alpha: Immediate Upgrade Required For Iran Access Issues

The short version: Tor relays and bridges should upgrade to Tor 0.2.2.33 or Tor 0.2.3.4-alpha so users in Iran can reach them again.. Yesterday morning (in our timezones The link for this article located at Tor Project is no longer available. . Tor announces immediate update to help users in Iran bypass government-imposed internet restrictions and restore access.. Tor Upgrade, Network Access, Government Restrictions, Privacy Tools. . LinuxSecurity.com Team

Calendar%202 Sep 15, 2011 User Avatar LinuxSecurity.com Team Privacy
78

Secure Network Access With DERMALOG FingerLogin Biometric Solutions

DERMALOG FingerLogin includes keyboard with fingerprint scanner, which utilizes high-performance optics and Live Finger Detection and can be connected via USB interface to PC or thin client. Solution also includes biometric software that compares scan with fingerprint database and password administration. Integrating in networks of public authorities, companies, and other organizations, such as hospitals or banks, product allows only owner of registered finger to retrieve authorized data. . Passwords may soon be a thing of the past. Today some laptops already provide the option to log in by fingerprint. Now this technology becomes available for the professional use in large networks. The biometrics specialist DERMALOG presents a new solution at CeBIT 2011, to make logging into networks of a company, bank, hospital or government much easier and much more secure - the DERMALOG FingerLogin, a keyboard with integrated fingerprint scanner, together with the appropriate biometrics software for IT networks. The new technology is already coming into use at the University Hospital Hamburg-Eppendorf (UKE) for more than 3.900 computers of the hospital. The link for this article located at ThomasNet News is no longer available. . Uncover the way DERMALOG FaceID transforms security access using facial recognition technology for protected systems.. DERMALOG FingerLogin, Fingerprint Technology, Biometric Solutions, Network Access Security, Data Protection Solutions. . LinuxSecurity.com Team

Calendar%202 Mar 07, 2011 User Avatar LinuxSecurity.com Team Vendors/Products
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200