Kernel developers have gracefully accepted suggestions concerning release signing process . A policy and process overview of the Linux kernel has identified some “potential pain points” in the handling and signing process of the security keys for the Linux kernel. The review of the kernel teams’ processes for signing releases and for the policies and procedures for the handling of the signing keys was sought by the Linux Foundation and conducted by cybersecurity experts at the Open Source Technology Improvement Fund (OSTIF) and Trail of Bits. . An analysis of procedures and guidelines suggests vulnerabilities within the signing workflow of the Linux kernel and its associated security keys.. Linux Kernel Security, Signing Process, Cybersecurity Policies. . LinuxSecurity.com Team
he Transportation Security Administration (TSA) needs to address security and privacy concerns before rolling out its Secure Flight program, according to the Government Accountability Office (GAO) . The link for this article located at ComputerWorld is no longer available. . The FAA needs to address concerns related to safety and personal data before rolling out the NextGen Air Traffic Control system as highlighted in the recent audit.. TSA Secure Flight, GAO report, security assessment, privacy issues. . Brittany Day
The Defense Department is conducting a top-down review of security concerning the use of personal electronic devices, including palmtop computers, certain pagers, cell phones and laptop computers. The review is part of a larger DOD effort to institute tougher security measures . . . . The Defense Department is conducting a top-down review of security concerning the use of personal electronic devices, including palmtop computers, certain pagers, cell phones and laptop computers. The review is part of a larger DOD effort to institute tougher security measures and to treat the Pentagon as a command center for the nation's defense. The link for this article located at Federal Computer Week is no longer available. . The Security Agency evaluates protective protocols for individual tech gadgets, increasing the importance of device protection.. DOD Security Review, Personal Device Policies, Electronic Device Safety. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.