Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 515
Alerts This Week
Warning Icon 1 515

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 2 articles for you...
210

Open vSwitch Critical: CVE-2023-1668 DoS Attack Advisory

It was discovered that Open vSwitch could be made to stop forwarding packets if it received specially crafted network traffic (CVE-2023-1668). Due to its high availability impact and the low attack complexity required to exploit the bug, this vulnerability has received a National Vulnerability Database (NVD) base score of 8.2 out of 10 (“High” severity). . A remote attacker could possibly use this issue to cause a denial of service (DoS), resulting in loss of access to your critical systems. An important update for Open vSwitch that fixes this dangerous vulnerability has been released. We urge all impacted users to apply the Open vSwitch updates issued by their distro(s) now to protect against attacks leading to loss of access and potential compromise. To stay on top of important updates released by the open-source programs and applications you use, be sure to register as a LinuxSecurity user , then subscribe to our Linux Advisory Watch newsletter and customize your advisories for the distro(s) you use. This will enable you to stay up-to-date on the latest, most significant issues impacting the security of your systems. Follow @LS_Advisories on Twitter for real-time updates on advisories for your distro(s) . . An external intruder could take advantage of this vulnerability to initiate a denial of service (DoS) attack, resulting in the unavailability of your systems.. DoS Attack, Open vSwitch Vulnerability, Network Security Update. . Brittany Day

Calendar%202 May 12, 2023 User Avatar Brittany Day Security Vulnerabilities
77

GoldBrute Botnet Escalates Attacks On RDP Servers Worldwide

Security researchers have discovered an ongoing sophisticated botnet campaign that is currently brute-forcing more than 1.5 million publicly accessible Windows RDP servers on the Internet. . Dubbed GoldBrute, the botnet scheme has been designed in a way to escalate gradually by adding every new cracked system to its network, forcing them to further find new available RDP servers and then brute force them. To fly under the radar of security tools and malware analysts, attackers behind this campaign command each infected machine to target millions of servers with a unique set of username and password combination so that a targeted server receives brute force attempts from different IP addresses. . Dubbed GoldBrute, the botnet scheme has been designed in a way to escalate gradually by adding every. security, researchers, ongoing, sophisticated, botnet, campaign, currently. . LinuxSecurity.com Team

Calendar%202 Jun 07, 2019 User Avatar LinuxSecurity.com Team Server Security
74

Fabian Yamaguchi Uncovers Network Flaws and Attack Strategies at 26C3

At the 26th Chaos Communication Congress (26C3) in Berlin, security researcher Fabian Yamaguchi demonstrated a number of vulnerabilities that can apparently be found in many average communication networks and affect all levels from the access layer to the application layer. Attackers exploit many minor design flaws which allow "dangerous attacks" when combined, explained the Berlin-based security expert who last year investigated vulnerabilities in the basic TCP internet protocol. Overall, the "bugs" can reportedly be exploited to hijack a proxy server such as Squid and control all of the network traffic that flows through it.. Yamaguchi explained that typical corporate networks, for instance, include a "demilitarised zone" (DMZ) with restricted access to the connected servers. Attackers who compromise a system within this zone have no access to local networks yet, said the researcher. This requires getting over a firewall, he added. It therefore makes little sense to directly attack a machine installed in this zone, said Yamaguchi. A detour via one of the system's clients, which are surrounded by a "zoo of technologies" such as Flash, media players or chat systems, tends to be the much more promising option. To demonstrate, "fabs" chose the Pidgin instant messaging software, where emoticons in MSN Chat are apparently known to be particularly vulnerable to attacks. According to the security expert, the software's "shoddy" protocol replaces character strings and word strings with images, allowing a more or less unrestricted variety of symbols to be displayed. The protocol's flawed encoding of a text in binary enabled Yamaguchi to download an executable program and eventually gave the researcher a first foothold in the network. The link for this article located at H Security is no longer available. . Yamaguchi explained that typical corporate networks, for instance, include a 'demilitarised zone' (D. chaos, communication, congress, (26c3), berlin, security, researcher, fabian, yamaguchi. . Anthony Pell

Calendar%202 Dec 29, 2009 User Avatar Anthony Pell Network Security
74

GOP Convention: Unsecured Wireless Networks Identified By Audit

Republicans and Democrats may hold to different ideologies, but they're pretty much the same -- lame -- when it comes to locking down wireless, a Boston-area firm said Thursday. As it did in late July when the Democrats held their convention in Boston, Newbury Networks, a provider of location-based wireless security solutions, conducted a "wardrive" around Madison Square Garden, the site of the Republican National Convention that wraps up today. . . .. Republicans and Democrats may hold to different ideologies, but they're pretty much the same -- lame -- when it comes to locking down wireless, a Boston-area firm said Thursday. As it did in late July when the Democrats held their convention in Boston, Newbury Networks, a provider of location-based wireless security solutions, conducted a "wardrive" around Madison Square Garden, the site of the Republican National Convention that wraps up today. Newbury's casual cruise on August 24 found thousands of unsecured wireless access points and adapters and hundreds of vulnerable wireless networks near Madison Square Garden. The link for this article located at Gregg Keizer is no longer available. . The digital infrastructure at political rallies often lacks proper safeguards, leaving networks open to attack.. Wireless Security Solutions, Unsecured Networks, Wireless Access Points, Network Assessment. . Anthony Pell

Calendar%202 Sep 03, 2004 User Avatar Anthony Pell Network Security
74

Asleap: New Tool for Cracking Cisco LEAP Network Passwords

The tool, called "Asleap," allows users to scan the wireless network broadcast spectrum for networks using LEAP (Lightweight Extensible Authentication Protocol), capture wireless network traffic and crack user passwords, according to a message posted to the Bugtraq online security discussion group on Wednesday. . . .. One day after it disclosed a security vulnerability in a wireless networking product, Cisco Systems Inc. must contend with a new threat - the long-promised release of a hacking tool that targets wireless networks running its LEAP wireless authentication protocol. The tool, called "Asleap," allows users to scan the wireless network broadcast spectrum for networks using LEAP (Lightweight Extensible Authentication Protocol), capture wireless network traffic and crack user passwords, according to a message posted to the Bugtraq online security discussion group on Wednesday. The link for this article located at ISG is no longer available. . One day after it disclosed a security vulnerability in a wireless networking product, Cisco Systems . called, 'asleap, allows, users, wireless, network, broadcast, spectrum, networks. . Anthony Pell

Calendar%202 Apr 12, 2004 User Avatar Anthony Pell Network Security
74

Exploring Stealth Scans' Role In System Security Insights

This week's column is a basic primer on scanning: what it is, why it's done, and the wonderful world of "secret handshakes" and stealth scans. Scanning a system, or a network, is normally done in order to find out what . . . . This week's column is a basic primer on scanning: what it is, why it's done, and the wonderful world of "secret handshakes" and stealth scans. Scanning a system, or a network, is normally done in order to find out what services are available. But remember, there are two groups who do it regularly. The good guys -- system administrators and network security folk -- do it to see what is exposed and thus vulnerable to attack. The bad guys -- script kiddies and worse -- do it to see what is exposed and thus vulnerable to attack. Funny, that is. Scanning is like going up to an apartment building and knocking on each door to see who is home. Are you running a Web server? A mail server? BIND? Telnet? FTP? RPC? Those are the questions that scanning answers. Unfortunately, the answers often reveal enough about your system to allow an uncouth visitor unauthorized access. The link for this article located at LinuxWorld is no longer available. . An overview of assessment methodologies, revealing infrastructures to identify weaknesses and threats in digital environments.. Network Scanning, Stealth Scans, System Scanning, Security Techniques. . Anthony Pell

Calendar%202 Mar 22, 2001 User Avatar Anthony Pell Network Security
83

Microsoft Attack Exposes Corporate Access Risks and Technology Issues

The attack on Microsoft underscores that corporate networks are still widely vulnerable to hackers, security analysts say. Even as companies shore up security in some areas, new technologies--such as Web-based email and broadband DSL and cable Internet connections--create new vulnerabilities.. . .. The attack on Microsoft underscores that corporate networks are still widely vulnerable to hackers, security analysts say. Even as companies shore up security in some areas, new technologies--such as Web-based email and broadband DSL and cable Internet connections--create new vulnerabilities. Worse, the increased dependence on notebook-carting employees taking work home or on the road creates gaping holes through which even the most unsophisticated of hackers can bypass corporate security measures. The link for this article located at News.com is no longer available. . Emerging tech amplifies risks within business infrastructures, uncovering obstacles that cybercriminals readily take advantage of.. Corporate Networking,Cybersecurity Challenges,Internet Vulnerabilities. . LinuxSecurity.com Team

Calendar%202 Oct 30, 2000 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200