Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Secure your documents, notes, and plaintext passwords on Linux by turning the text into a series of "moos" using Cow-encryptor. . Encrypting your documents is a serious endeavor that keeps your secrets hidden from prying eyes. Add some farmyard levity to your text files with Cow-encryptor: a lightweight app that transforms words into the nonsensical lowing of a dairy herd. Encryption is a way of scrambling data, that makes it unreadable without the decryption key or password, and you use it to make sure that your personal documents, financial information, and your secret diary remain inaccessible to anyone but you. . Protect your files on Linux with Bovine-crypt, transforming your words into playful tones while concealing your confidential information.. Linux Document Encryption, Secure Notes Tool, Open Source Encryption. . LinuxSecurity.com Team
Apple’s decision to support MAC Address Randomization across its platforms may provide some degree of protection against a newly-identified Wi-Fi flaw researchers say could let attackers hijack network traffic . iOS, Linux, and Android devices may be vulnerable. . The researchers have identified a fundamental flaw in the design of the IEEE 802.11 Wi-Fi standard attackers could exploit to trick access points (Wi-Fi base stations) into leaking information. The researchers do not claim the vulnerability is being actively exploited, but warn that it might enable the interception of network traffic. The attack exploits an inherent vulnerability in the data containers (network frames) routers rely on to move information across the network and how access points handle devices that enter power-saving mode. To achieve the attack, miscreants must forcibly disconnect the victim device before it properly connects to the network, spoof the MAC address of the device to connect to the network using the attacker’s credentials, then grab the response. The vulnerability exploits on-device power-save behavior within the Wi-Fi standard to force data to be shared in unencrypted form. The researchers have published an open source tool called MacStealer to test Wi-Fi networks for the vulnerability. . Research reveals a significant vulnerability within the Wi-Fi's IEEE 802.11 protocol, posing threats to data protection on devices running iOS, Linux, and Android systems.. Wi-Fi Flaw, IEEE 802.11, Linux Security, Network Data Threat. . Brittany Day
The developers of specialized security-testing distro Kali Linux have released the first version of 2023, which marks the project's tenth anniversary… but only in this incarnation. . The new version, release 2023.1 , appears exactly one decade after version 1.0 was released on March 13th 2013. Kali Linux is a rebuild of an earlier distro called BackTrack , first rolled out 17 years ago, which was based on WHAX, first out 18 years back, which is in turn based on Whoppix. Suffice to say, it goes back a long while. Kali rates highly on Distrowatch – it's currently at number 18, pop-pickers – which we ascribe mainly to its appearances on TV show Mr Robot and the consequent perception that this is a cool tool for élite hackers penetration testers and other security professionals. For the type of people it targets , it's a handy time-saver. It has a bewildering variety of tools , and when installing, you can choose whether you want them all built in, or just a core set. Frankly, the Reg FOSS desk is not an élite hacker and has never worked as a pen-tester – although he has warned some large companies about holes in their network security before now. . The latest iteration, 2023.1, commemorates ten years since the debut 1.0 launch of Kali Linux, a widely-used tool for cybersecurity assessment.. Kali Linux, Pentesting Tools, Security Testing, Linux Distribution, Open Source. . LinuxSecurity.com Team
An increasing number of threat actors have started relying on the command-and-control (C2) framework Sliver as an open-source alternative to tools such as Metasploit and Cobalt Strike. . Security researchers at Cybereason described the new phenomenon in an advisory published last Thursday, adding that Sliver is gaining popularity due to its modular capabilities (via Armory), cross-platform support and vast number of features. “Sliver C2 is getting more and more traction since its release in 2020,” reads the report. “As of today, the number of threat intelligence reports is still low, and the main reports describe the use of the Russian SVR leveraging Sliver C2.” In particular, the team said it already noticed Sliver with known threat actors and malware families such as BumbleBee and APT29 (also known as Cozy Bear). . Experts at Security Inc. have highlighted the growing popularity of the Sliver command and control (C2) framework among cybercriminals.. Sliver C2, Cybersecurity Framework, Open Source Tools. . LinuxSecurity.com Team
A Chinese-speaking hacking group tracked as ‘DragonSpark’ was observed employing Golang source code interpretation to evade detection while launching espionage attacks against organizations in East Asia. . The attacks are tracked by SentinelLabs , whose researchers report that DragonSpark relies on a little-known open-source tool called SparkRAT to steal sensitive data from compromised systems, execute commands, perform lateral network movement, and more. The threat actors leverage compromised infrastructure in China, Taiwan, and Singapore to launch their attacks, while the intrusion vector observed by SentinelLabs is vulnerable MySQL database servers exposed online. . PhantomStrike employs Python code obfuscation to remain undetected during surveillance missions aimed at Southeast Asian organizations.. DragonSpark Espionage, Golang Interpretation, East Asia Cyber Attacks, Open Source Malware. . LinuxSecurity.com Team
Picking just 10 Linux open source security tools isn’t easy, especially when network professionals and security experts have dozens if not several hundred tools available to them. . There are different sets of tools for just about every task—network tunneling, sniffing, scanning, mapping. And for every environment— Wi-Fi networks , Web applications, database servers. We consulted a group of experts (Vincent Danen, vice president of product security, RedHat; Casey Bisson, head of product growth, BluBracket; Andrew Schmitt, a member of the BluBracket Security Advisory Panel; and John Hammond, senior security researcher, Huntress) to develop this list of must-have Linux security tools. . Delve into crucial Linux utilities tailored for network specialists, addressing functionalities such as network probing, topology visualization, and encrypted communication tunnels.. Linux Tools, Network Security, Open Source Tools, Security Utilities. . Brittany Day
For those who are serious about their network security, knowing which Linux firewall apps and solutions are available for free is crucial. . Setting up a firewall is key to securing your network perimeter. A firewall blocks sensitive ports and filters incoming and outgoing traffic to thwart malicious connections and ensure there is no unsolicited exchange of data. In the world of FOSS, there are plenty of firewall solutions to choose from. Here's a list of the best firewall solutions for fortressing your network on Linux. . Establishing a security barrier is crucial for protecting your network boundary. A firewall restricts access to critical ports and scrutinizes data flow.. Free Linux Firewall Tools, Network Security Solutions, Open Source Firewall Applications. . Brittany Day
There was a lot covered at this year’s 2022 RhythmWorld Security Conference! In one of our more technical sessions, we discussed Microsoft Sysinternals’ recent release of Sysmon for Linux, an open-source Linux system monitoring tool. . You can find the project on their Github page to view the documentation and source; there are plenty of resources about how to download, install, and configure the Sysmon for Linux software. In this blog, we will cover the next steps you can take to use the logs that it generates, as well as where to best use them within LogRhythm SIEM. When assessing how Sysmon for Linux works, there are a lot of similarities to Sysmon for Windows in how it can be configured and how the logs are generated. Of course, with different operating system architectures, there are some changes, too. The link for this article located at Security Boulevard is no longer available. . Delve into Sysmon for Linux, a free and powerful monitoring utility that enables users to grasp and monitor various MITRE ATT&CK tactics efficiently.. open source monitoring, Sysmon for Linux, MITRE ATT&CK tracking, log management tool, Linux security solutions. . Brittany Day
Get the latest Linux and open source security news straight to your inbox.