Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges

Alerts This Week
Warning Icon 1 488
Alerts This Week
Warning Icon 1 488

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 10 articles for you...
77

Afilias: Implementing DNSSEC for .info and Various Other Domains

Afilias, which operates .info and more than a dozen other Web site extensions, will announce on Monday plans to deploy an emerging standard known as DNSSEC that adds a layer of encryption to the Internet's Domain Name System. Will security worries propel DNS into the cloud?. Afilias will deploy DNS Security Extensions (DNSSEC) on 13 of the domains it operates -- including .info, India's .in and the Hong Kong-based .asia -- by the end of the year. DNSSEC prevents spoofing attacks by allowing Web sites to verify their domain names and corresponding IP addresses using digital signatures and public-key encryption. The link for this article located at Network World is no longer available. . Afilias is set to deploy DNSSEC across 13 different domains, bolstering online security through advanced encryption protocols.. DNS Security, DNSSEC Implementation, Internet Encryption. . LinuxSecurity.com Team

Calendar%202 Aug 24, 2010 User Avatar LinuxSecurity.com Team Server Security
77

Five Key Strategies for Enhancing the Security of Your Linux Systems

Protecting a networked computer is a never-ending challenge . What The link for this article located at ZDNet Blogs is no longer available. . Stay secure with regular updates, robust firewalls, strong authentication, vigilant log monitoring, and effective security tools for your Linux system. Linux Security Improvements, Network Security, System Administration. . LinuxSecurity.com Team

Calendar%202 Jun 15, 2010 User Avatar LinuxSecurity.com Team Server Security
74

Home Network Security: Risks of Default Passwords and Attack Methods

Home computer users who leave default passwords on network hardware unchanged could be at risk from attack say security experts. Researchers created an attack that surreptitiously redirects a user to nefarious sites once they have visited a booby-trapped webpage. . The attack works by re-writing the address book in network hardware to point victims to the scam sites. About 50% of users leave default passwords unchanged, suggests research. The theoretical attack was explored in a paper written by researchers from the University of Indiana and security firm Symantec. . Using standard credentials on routers may put residential users at risk of being directed to harmful websites. Protect your network.. Home Network Security, Default Passwords, Network Safety, Security Risks. . Bill Locke

Calendar%202 Feb 16, 2007 User Avatar Bill Locke Network Security
74

Enhancing DNS Security And Threat Mitigation Techniques

The Internet is a seemingly limitless source of information. It provides the power of collective knowledge and information to a vast array of users who access innumerable resources for countless reasons. These resources are typically accessed by using a human readable name designed to be easily remembered, thus increasing the usability of the resource. These human readable names, as the very term implies, are for the sake of the human users. Network devices, however, find each other by using a number, referred to as IP (Internet Protocol) addresses. The Domain Name System is the service that maps the human readable names to device specific IP addresses creating the user friendly nature of networked systems. . The link for this article located at InfoSecWriters is no longer available. . Uncover robust DNS protection methods and risk reduction tactics designed to enhance your system's security posture.. DNS Security, Threat Mitigation, Network Safety. . Benjamin D. Thomas

Calendar%202 Dec 01, 2006 User Avatar Benjamin D. Thomas Network Security
74

Investigating IP Packet Spoofing And Its Impact On Network Safety

Spoofed IP packets are still believed to be a significant problem for the Internet. But are they? The Spoofer Project is attempting to measure the problem. Apparently, 80% of the IP addresses measured no longer support spoofing! Their methodology is simple: have users download a client which attempts to spoof packets to the monitor. Using these packets, they can determine the filter rules. . The link for this article located at Slashdot.org is no longer available. . IP packet spoofing is the technique of sending packets from a false source address, used in malicious activities like DoS attacks and evading security. IP Spoofing Analysis, Network Threat Evaluation, Internet Security Trends. . Benjamin D. Thomas

Calendar%202 May 03, 2006 User Avatar Benjamin D. Thomas Network Security
78

3Com's Zero Day Initiative Aims To Boost Security Threat Reporting

3Com this week is expected to launch a program that offers cash to members of the security community in return for information on potentially damaging Internet-based security threats. Its Zero Day Initiative is an attempt to prompt the disclosure of security vulnerabilities quicker by giving independent security researchers incentive for pointing out holes in software and hardware products that could lead to network attacks. Some observers call the program a positive step toward making networks safer, while others question how such a payoff system would work, or whether third-party vendors -- including 3Com competitors -- would react negatively to a system under which 3Com gives money to individuals for information about product vulnerability before the affected vendors know about them. . "We're going to be able to address a large amount of researchers who may not necessarily be contacting vendors on their findings regarding security vulnerabilities," said David Endler, director of security research at 3Com's TippingPoint division. 3Com acquired intrusion-detection system and security vendor TippingPoint in 2004 for $451 million. The link for this article located at ComputerWorld is no longer available. . 3Link's latest program presents monetary incentives for warning signs reported by cybersecurity experts to enhance online security.. Threat Research, Security Initiative, Network Safety, Software Bugs. . LinuxSecurity.com Team

Calendar%202 Jul 27, 2005 User Avatar LinuxSecurity.com Team Vendors/Products
74

Best Practices for Implementing Security in Wireless Networks Today

Wireless technology is dramatically changing the world of computing, creating new business opportunities but also increasing security risks. Wireless LANs, which use radio frequencies to broadcast in the unlicensed 2.4GHz frequency band . . .. Wireless technology is dramatically changing the world of computing, creating new business opportunities but also increasing security risks. Wireless LANs, which use radio frequencies to broadcast in the unlicensed 2.4GHz frequency band, can be as simple as two computers equipped with wireless network interface cards or as complex as hundreds of computers outfitted with cards communicating through access points. They're relatively inexpensive and easy to install. But they also introduce a number of critical security risks and challenges, and it's important to implement strong security measures to mitigate these risks. What follows are potential risks and associated best practices to help you secure your network and understand WLAN characteristics: The link for this article located at CIO is no longer available. . Wireless technology is dramatically changing the world of computing, creating new business opportuni. wireless, technology, dramatically, changing, world, computing, creating, business, opportuni. . Anthony Pell

Calendar%202 Feb 06, 2004 User Avatar Anthony Pell Network Security
81

Exploring the Allegations Surrounding Scott Richter's Email Marketing

I don't know what to make of Scott Richter's claims that he is not a spammer, but rather a legitimate e-mail marketer. Three things are true about spam: (1) There are many spammers. (2) There are many legitimate e-mail marketers. (3) . . . . I don't know what to make of Scott Richter's claims that he is not a spammer, but rather a legitimate e-mail marketer. Three things are true about spam: (1) There are many spammers. (2) There are many legitimate e-mail marketers. (3) All of the spammers claim to be legitimate e-mail marketers. Scott Richter is one of the subjects in our recent feature story on spam, ehich looks at who's sending spam and why it's hard to stop them. The link for this article located at SecurityPipeline is no longer available. . I don't know what to make of Scott Richter's claims that he is not a spammer, but rather a legitimat. don't, scott, richter's, claims, spammer, rather, legitimat. . LinuxSecurity.com Team

Calendar%202 Nov 13, 2003 User Avatar LinuxSecurity.com Team Privacy
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200