Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 506
Alerts This Week
Warning Icon 1 506

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -2 articles for you...
82

Linux Programmer Wins GPL Enforcement Case Against Fortinet

A Linux programmer reported a new victory in a German court Thursday in enforcing the General Public License, which governs countless projects in the free and open-source software realms. A Munich district court on Tuesday issued a preliminary injunction barring Fortinet, a maker of multipurpose security devices, from distributing products that include a Linux component called "initrd" that Harald Welte helped write. . In addition to being a Linux programmer, Welte runs an operation called the GPL Violations project that attempts to encourage companies shipping products incorporating GPL software to abide by the license terms. The license lets anyone use GPL software in products without paying a fee, but it requires that they provide the underlying source code for the GPL components when they ship such a product. The case highlights the ease with which open-source software can spread across the computing industry--but also the growing pains that companies face as they adjust to new legal concepts underlying the collaborative programming approach. Fortinet, based in Sunnyvale, Calif., said in a statement it's addressing the issue but is surprised that Welte resorted to legal action.. A recent court ruling in favor of an open-source developer highlights the critical role of GPL upholding in software licensing agreements.. GPL Enforcement, Open Source Software, Software Licensing. . Brittany Day

Calendar%202 Apr 14, 2005 User Avatar Brittany Day Government
83

DDoS Insights With Mixter: Understanding Cybersecurity Challenges

The federal investigation into last week's attacks on major Web sites has reportedly turned to at least one anonymous programmer believed to have written software that may have been used in the assaults. A programmer known only as "Mixter," who . . . . The federal investigation into last week's attacks on major Web sites has reportedly turned to at least one anonymous programmer believed to have written software that may have been used in the assaults. A programmer known only as "Mixter," who says he resides in Germany, has not been publicly accused in any of the cases and denies any responsibility for the "distributed denial of service" (DDoS) attacks. Mixter is part of a small group of underground programmers who say they create assault technologies that can be used in testing to improve Internet security. The recent attacks have renewed controversy over this practice, raising questions about whether these programs increase the potential for misuse when they are posted publicly online. In an interview Wednesday with CNET News.com at the height of last week's shutdowns, Mixter explained his actions and philosophy on technological security. Mixter: I am in fact the author of the programs called TFN and TFN2K, but not of Trinoo. The original Trinoo was made some months earlier than the first TFN, but unlike TFN, (it's) not distributed publicly...Stacheldraht isn't written by me. There have been many false rumors about this. There is another German hacker who goes by the name "Randomizer" who wrote that one. The link for this article located at News.com is no longer available. . The federal investigation into last week's attacks on major Web sites has reportedly turned to at le. federal, investigation, week's, attacks, major, sites, reportedly, turned. . LinuxSecurity.com Team

Calendar%202 Feb 14, 2003 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

FBI Arrests Dmitry Sklyarov: Activism and Outrage in Response

When the FBI arrested a Russian programmer this week on charges of criminal copyright violations, the government unwittingly ignited a powder keg of outrage. Web pages immediately sprouted to demand the release of Dmitry Sklyarov, who was visiting the United States . . . . When the FBI arrested a Russian programmer this week on charges of criminal copyright violations, the government unwittingly ignited a powder keg of outrage. Web pages immediately sprouted to demand the release of Dmitry Sklyarov, who was visiting the United States to describe his work at the Defcon hacker convention in Las Vegas. Newly minted activists set up a mailing list, launched a defense fund, and trashed Adobe Systems for urging the U.S. government to arrest Sklyarov on charges of circumventing its copy protection methods. Dmitry Sklyarov, a lead programmer for Russian software company ElcomSoft, was arrested Monday morning for distributing the company's Advanced eBook Processor. The link for this article located at Wired is no longer available. . The apprehension of a Russian software engineer by the FBI ignites intense public backlash and rallies for support; demonstrations unfold demanding the freedom of Dmitry Sklyarov.. Russian Programmer,Hacker Activism,Copyright Issues,Sklyarov Protests. . LinuxSecurity.com Team

Calendar%202 Jul 19, 2001 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200