Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 498
Alerts This Week
Warning Icon 1 498

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -1 articles for you...
83

Credential Leak In Thousands Of Etcd Deployments Exposed Online

Thousands of servers running etcd are exposing user credentials publicly on the Internet. According to security researcher Giovanni Collazo, a quick query made through the Shodan search engine revealed a total of 2,284 etcd servers which are leaking credentials, including the passwords and keys required for cms_admin, mysql_root, and postgres server infrastructure.. Etcd is a type of database which allows for the storage of data by clustering. The open-source system is able to store the credentials required for different servers and applications, and as apps can read and write data into the management system, reconfiguration across servers and networks becomes a more streamlined process.. Uncover the alarming reality that numerous etcd instances are inadvertently revealing confidential information over the internet, jeopardizing system security.. etcd Security, Server Credentials Leak, Open Source Database, Cybersecurity Risks. . LinuxSecurity.com Team

Calendar%202 Mar 26, 2018 User Avatar LinuxSecurity.com Team Hacks/Cracks
67

Google's Encryption Elevates MariaDB Security For PCI Applications

Google is dropping encryption into MariaDB, the fork of Oracle. The development has been branded a "major enhancement" for MariaDB security by those running the project, particularly for customers building PCI and other types of applications that need encryption at rest. Appearing in a MariaDB community edition means Google's crypto will be picked up by commercial and non-commercial spins of the open-source database. The link for this article located at The Register UK is no longer available. . The development has been branded a 'major enhancement' for MariaDB security by those running the pro. google, dropping, encryption, mariadb, oracle, development, branded. . LinuxSecurity.com Team

Calendar%202 Apr 09, 2015 User Avatar LinuxSecurity.com Team Cryptography
79

New Comprehensive Open Source Vulnerability Database for Software Flaws

A collaborative project intended to give network managers a comprehensive, unbiased source of information on software vulnerabilities has gone live, delivering its entire library of flaws under an open-source licence. . . .. A collaborative project intended to give network managers a comprehensive, unbiased source of information on software vulnerabilities has gone live, delivering its entire library of flaws under an open-source licence. The Open Source Vulnerability Database (OSVDB), made available to the public last week, is intended as a clearing-house for verified vulnerability information, collecting and organizing the thousands of vulnerability reports that surface each year so that IT managers don't have to. The link for this article located at LinuxWorld is no longer available. . Unveil an innovative joint venture offering extensive free-access resources regarding software vulnerabilities aimed at IT administrators.. Open Source Vulnerability Database, Software Flaws, IT Management, Vulnerability Information, Open-Source Project. . LinuxSecurity.com Team

Calendar%202 Apr 06, 2004 User Avatar LinuxSecurity.com Team Security Projects
79

ISIS Collaboration: Open Source Vulnerability Database Initiatives

The Internetworked Security Information Service (ISIS) brings together four independent projects--the Open Source Vulnerability Database, the Alldas.de defacement-tracking service, the PacketStorm software database and the vulnerability watchdog VulnWatch--into a loosely organized collaboration. "There are a lot of commercial organizations that . . . . The Internetworked Security Information Service (ISIS) brings together four independent projects--the Open Source Vulnerability Database, the Alldas.de defacement-tracking service, the PacketStorm software database and the vulnerability watchdog VulnWatch--into a loosely organized collaboration. "There are a lot of commercial organizations that put out this type of information for free, but will it always be that way?" said Chris Wysopal, director of research and development for security company @Stake. "We are calling the project 'open source' because the information in it will be open and free." The link for this article located at ZDNet is no longer available. . The Internetworked Security Information Service (ISIS) brings together four independent projects--th. internetworked, security, information, service, (isis), brings, together, independent, projects--th. . LinuxSecurity.com Team

Calendar%202 Aug 06, 2002 User Avatar LinuxSecurity.com Team Security Projects
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":3,"type":"x","order":2,"pct":60,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":2,"type":"x","order":4,"pct":40,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200