Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Hackers are turning coding languages such as Go, Rust, Nim and DLang into next-gen malware targeting Linux and Windows systems, enabling them to avoid signature detection and add layers of obfuscation. . Hackers are increasingly turning to relatively obscure programming languages when coding malware in a bid to avoid detection and pose greater challenges for the cyber security industry. Security professionals are coming across greater numbers of malware strains that are being written in ‘exotic’ languages such as coders are shifting to silicon valley backed programming languages , Rust, Nim, and DLang, according to researchers with Blackberry. Operators are even adopting these languages to rewrite existing malware families and create tools for new malware sets. . Cybercriminals are increasingly leveraging obscure coding languages to develop malicious software targeting both Linux and Windows, complicating the detection process.. malware Development, Cyber Threats, Exotic Languages, Linux Security. . LinuxSecurity.com Team
We all likely heard about VPN obfuscation at this point. Over the past years, a pretty noticeable number of VPN providers started using the term on their web pages. But what exactly is it? And why should you care about it? . Here’s all you need to know about VPN obfuscation – including how it works, how to optimize it, what VPN obfuscation techniques VPN providers use, and a whole list of providers who offer it. VPN obfuscation is a technique that can hide VPN traffic. It won’t make any changes to the traffic, though – it will just use a “mask” to hide its patterns so that ISPs and governments can’t spot it. . Explore VPN obfuscation, unraveling its mechanisms, strategies, and advantages for users seeking improved privacy and protection.. VPN, Obfuscation Techniques, Network Privacy, Security Measures. . LinuxSecurity.com Team
Cybercrooks who rig Web sites to break into PCs are getting better at hiding their malicious code, a security expert said Wednesday. Increasingly the actual code, often JavaScript, used to attack PCs is hidden in Flash animations or scrambled so that anyone who examines the source of a page can't easily identify it, said Jose Nazario, a senior software engineer at Arbor Networks, in a presentation at the CanSecWest security confab here. . "Their obfuscation tools are primitive but effective," Nazario said. "They use obfuscation to avoid simple signatures," he said, referring to security techniques based on signatures to detect malicious Web sites. Signatures are fingerprints of known attacks. Web attacks have become commonplace. Tens of thousands of Web sites attempt to install malicious code, according to StopBadware.org. The sites, the bulk of which are compromised sites, often drop a Trojan horse or other pest onto a PC through a security hole in the Web browser. . 'Their obfuscation tools are primitive but effective,' Nazario said. 'They use obfuscation to avoid . cybercrooks, sites, break, getting, better, hiding, their, malicious. . LinuxSecurity.com Team
As JavaScript becomes an increasingly key component of online attacks, attackers are investing more energy in obfuscation and other techniques to make defenders' attempts at reverse engineering more difficult, a security researcher told attendees at the annual CanSecWest conference on Wednesday. . Attackers have adopted the same techniques used to hide the purpose of other types of malicious code, such as splitting up the code into many components and the use of custom encoders, to obfuscate JavaScript, said Jose Nazario, senior security engineer at network-protection firm Arbor Networks. Other advances include the addition of functions aimed at detecting any attempts at debugging or running the program in a virtual machine, he said. The link for this article located at SecurityFocus is no longer available. . Advancements in code encryption methods complicate the decryption of JavaScript scripts for security experts.. JavaScript Obfuscation,Cyberattack Strategies,Security Techniques. . LinuxSecurity.com Team
I can imagine a world where the computers needed no security. Where there were no passwords, no security checks, and no firewalls. Where the computers communicated freely and shared information rather than hiding it. I can also imagine the scoundrels of . . . . I can imagine a world where the computers needed no security. Where there were no passwords, no security checks, and no firewalls. Where the computers communicated freely and shared information rather than hiding it. I can also imagine the scoundrels of earth hacking that world's net and stealing all their credit cards. Unfortunately, that is our reality. In today's world of interconnected networks: Secure it, or lose it. We don't have the luxury of running insecure networks or exposing insecure data. Unfortunately, it's often our task to sell that data and try to prevent those from seeing it to profit from our work. That's where encryption, hashing, and obfuscation come in. This article hopes to clear up some misconception in the industry as to how these technologies work and how they relate to each. In practice, they do not conflict at all. Simply put, each works best in a specific problem domain. The link for this article located at ZDNet.com is no longer available. . In today's interconnected world, protecting data is crucial as numerous threats target digital assets. Encryption converts data into a secure format for authorized users only.. Encryption Techniques, Data Protection Strategies, Information Security Methods. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.