Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 10 articles for you...
81

Global Activism Against Facial Recognition Technologies in 2019

2019 has marked the year where activists worldwide have taken action against the use of privacy-threatening facial recognition technology in public spaces. Learn more: . We’ve all heard the expression, “What happens in Vegas, stays in Vegas.” We might hope that what we do and where we go will only be known to those who were there in person. Yet maintaining such anonymity and privacy in public spaces is becoming ever more difficult. 2019 has marked the year where a growing digital rights network around the world is pushing back against governments and companies’ use of face recognition technologies in public spaces. This year, in an attempt to prevent people from having their movement and actions meticulously tracked, these activists took action against face recognition in countries all over the world. . In 2020, community organizers protested against AI monitoring in urban spaces, championing digital rights and autonomy from data collection practices.. Facial Recognition Resistance, Privacy Rights Advocacy, Global Activism. . LinuxSecurity.com Team

Calendar%202 Dec 31, 2019 User Avatar LinuxSecurity.com Team Privacy
67

Exploring Blockchain Innovations And Privacy Technologies Future

Interested in what the future has in store for blockchain? Check out this interesting HelpNetSecurity article: . The origins of blockchain as many are familiar with it today can be traced back to the Bitcoin whitepaper , first published in 2008 by Satoshi Nakamoto, which offered a vision of a new financial system underscored by cryptography and trust in code. Throughout the past decade, iterations of this technological infrastructure have gradually built out a diverse industry ecosystem, allowing for use cases that extend beyond cryptocurrencies and peer-to-peer transactions. From smart contracts to asset tokenization, across industries ranging from gaming, supply chain, Internet of Things ( IoT ), real estate, and many others, the proliferation of use cases across verticals are a testament to the technology’s inherent versatility. The link for this article located at HelpNetSecurity is no longer available. . Blockchain technology's journey began in 2008 with Bitcoin, a decentralized currency enabling peer-to-peer transactions, inspiring innovations like Ethereum and zk-rollups.. Blockchain Technology, Privacy-Preserving Solutions, Cryptography Innovations. . LinuxSecurity.com Team

Calendar%202 Aug 23, 2019 User Avatar LinuxSecurity.com Team Cryptography
81

DNS Over HTTPS Threatens ISPs and Government Surveillance Efforts

The penny has finally dropped inside ISPs and governments that a privacy technology called DNS over HTTPS (DoH), backed by Google, Mozilla and Cloudflare, is about to make web surveillance a lot more difficult. . In the UK, this matters because under the 2016 Investigatory Powers Act (IPA), ISPs are required to store a record of which websites citizens visit for the previous 12 months, which is done by noticing Domain Name System (DNS) requests, e.g. to xyz.com. DNS over HTTPS (and its close relative DNS over TLS, or DoT) makes this impossible because it encrypts these requests – normally sent in the clear – hence the panic reported in a recent Sunday Times article (paywall). The link for this article located at NakedSecurity is no longer available. . DNS over HTTPS enhances user privacy against ISP and government surveillance laws like the IPA. Explore its implications.. DNS over HTTPS, web encryption, privacy advancements, ISP surveillance. . LinuxSecurity.com Team

Calendar%202 Apr 24, 2019 User Avatar LinuxSecurity.com Team Privacy
79

Impact of Open Source on Global Security: Insights from Mikko Hypponen

Open source software can be one answer to combating the global surveillance of innocent citizens, said security expert Mikko Hypponen in his keynote last week at LinuxCon and CloudOpen Europe in Edinburgh.. Advances in computing and the rise of global networks have made the storage and transmission of data cheap and easy. This has created unparalleled connectivity, progress and innovation, Hypponen said. But it The link for this article located at Linux.com is no longer available. . Open source software can enhance global security by addressing surveillance risks through transparency, community audits, and custom privacy features for users. Open Source Software,Cybersecurity Insights,Mikko Hypponen,Global Security,Privacy Technology. . LinuxSecurity.com Team

Calendar%202 Oct 29, 2013 User Avatar LinuxSecurity.com Team Security Projects
81

Exploring User-Controlled RFID Solutions For Privacy Enhancement

A researcher is working on technology he hopes will be able to control RFID tags and protect private information. "We are building our own RFID cards and adding features to them to make it visible and noticeable when someone is accessing the information," Nicolai Marquardt, a Ph.D. student at the University of Calgary said during the Computer Human Interaction conference in Atlanta Wednesday. . He said that his project can also make it possible for users to control when the information on the card is being accessed. With RFID being embedded into everyday items like passports, credit cards and transit passes, security becomes a concern with the always-on technology. Marquardt is working with Microsoft Research in the U.K. on the project and has four distinct types of RFID controllers. The first group gives the user direct feedback. There's one that lights up, one that vibrates and one that makes a sound when the tag is being accessed. The next group has controllable tags. One has a button that needs to be pressed before the RFID becomes active. Another one is touch sensitive so, for example, someone needs to be holding the tag in order to read the information on it. The third group of tags has sensing properties. One is light sensitive, so data can't be accessed when the card is in a pocket. Another is tilt sensitive so it can only be accessed when pressed flat against a reader. The link for this article located at IT World is no longer available. . He said that his project can also make it possible for users to control when the information on the . researcher, working, technology, hopes, control, protect, private. . LinuxSecurity.com Team

Calendar%202 Apr 16, 2010 User Avatar LinuxSecurity.com Team Privacy
74

Investigating the Dangers Associated with Traffic Alteration in Tor Network

On October 4th one of our readers sent in a very worrying analysis of what appeared to be "traffic modification" (in his words) on the part of the Tor network. The Tor ("The Onion Router") network is an anonymizing peer-to-peer network of routers on the Internet which uses various techniques to bounce traffic around the Internet in such a way that traffic analysis becomes difficult if not impossible to perform. Tor is a perfect example of a dual-use technology: it can be used to avoid government-imposed Internet censorship or to protect the identity of a corporate whistleblower but at the same time it is sadly ideal for various nefarious uses. . The link for this article located at Sans.org is no longer available. . The Tor network offers online anonymity but has vulnerabilities such as reliance on volunteer relays, potential traffic monitoring, and user exposure risks that necessitate caution. Anonymity Network, Traffic Analysis, Privacy Technology, Tor Network Security. . Benjamin D. Thomas

Calendar%202 Oct 18, 2006 User Avatar Benjamin D. Thomas Network Security
67

Protect Your Calls From NSA Surveillance With Zfone Technology

How easy is it for the average internet user to make a phone call secure enough to frustrate the NSA's extrajudicial surveillance program? Wired News took Phil Zimmermann's newest encryption software, Zfone, for a test drive and found it's actually quite easy, even if the program is still in beta. Zimmermann, the man who released the PGP e-mail encryption program to the world in 1991 -- only to face an abortive criminal prosecution from the government -- has been trying for 10 years to give the world easy-to-use software to cloak internet phone calls. . The link for this article located at Wired.com is no longer available. . The link for this article located at Wired.com is no longer available.. average, internet, phone, secure, enough, frustrate. . LinuxSecurity.com Team

Calendar%202 Apr 04, 2006 User Avatar LinuxSecurity.com Team Cryptography
81

Examining Privacy And Surveillance Technologies In The USA

The convergence of privacy-invading technologies and Washington's appetite for surveillance have put civil liberties on the run. This is especially true in the war against terrorism. Controversial initiatives have included biometric face cameras, wiretap enhancements, invasive computer-assisted airline passenger screening, . . . . The convergence of privacy-invading technologies and Washington's appetite for surveillance have put civil liberties on the run. This is especially true in the war against terrorism. Controversial initiatives have included biometric face cameras, wiretap enhancements, invasive computer-assisted airline passenger screening, escalated e-mail monitoring fostered by the USA Patriot Act, and the Pentagon's Total Information Awareness data-mining project (now renamed the "Terrorism" Information Awareness, or TIA). Even a national ID card was proposed. In the right circumstances, data-mining technologies and "biometrics" -- such as voice prints, retina, iris and face scanners, digitized fingerprints, and even implantable chips -- can benefit us. That's because data-mining and biometrics, at least in principle, are about enhancing convenience, service, authentication, and individual security more than they are about invading privacy. Biometrics, for example, promises increased privacy and security by guarding against identity theft in our myriad marketplace transactions. We'll see their use in cell phones, laptops, car doors, doorknobs and office keys -- basically everywhere. They can increase security in online commerce, help locate a lost youngster, relay medical information to doctors, and much more. The link for this article located at CATO is no longer available. . Intrusive technology confronts protective strategies within the United States' monitoring initiatives.. Privacy Technologies, Surveillance Measures, Civil Liberties, Biometric Technologies, Data Mining. . LinuxSecurity.com Team

Calendar%202 Jun 26, 2003 User Avatar LinuxSecurity.com Team Privacy
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200