An unknown threat actor is brute-forcing Linux SSH servers to install a wide range of malware, including the Tsunami DDoS (distributed denial of service) bot, ShellBot, log cleaners, privilege escalation tools, and an XMRig (Monero) coin miner. . SSH (Secure Socket Shell) is an encrypted network communication protocol for logging into remote machines, supporting tunneling, TCP port forwarding, file transfers, etc. Network administrators typically use SSH to manage Linux devices remotely, performing tasks such as running commands, changing the configuration, updating software, and troubleshooting problems. However, if those servers are poorly secured, they might be vulnerable to brute force attacks , allowing threat actors to try out many potential username-password combinations until a match is found. . The Tsunami botnet malware specifically aims at inadequately protected Linux SSH servers, leveraging numerous vulnerabilities.. Linux Malware, SSH Security, Brute Force Attacks, Tsunami Botnet, Remote Server Management. . LinuxSecurity.com Team
Linux admins can use Cockpit to view Linux logs, monitor server performance and manage users. Use the tool to help admins manage servers, regardless of experience level. . The Linux command line is a fast and flexible tool for automation and scripting. However, sometimes, there is a benefit to using a GUI like the web-based administrative tool Cockpit instead. The GUI can be faster or more comfortable for admins who need to quickly look at several pieces of information. In those situations, consider the use of Cockpit. Cockpit provides a simple, intuitive graphical connection to remote Linux servers. The interface enables admins to manage users and groups, configure firewall settings and display hardware information. In terms of efficiency, Cockpit is easy to implement across an organization, especially those with less familiarity with the CLI . Cockpit also doesn't interfere with other administration and configuration tools. For example, it's independent of Ansible, which means admins still manage settings across the board with standard configuration utilities. With its standard security features, getting Cockpit approved for use in your organization shouldn't be difficult. It also supports the expected encryption levels. . Discover Cockpit, a powerful tool designed for efficient management and monitoring of Linux servers, enhancing administrative processes through a user-friendly interface.. Cockpit Administration, Linux Server Management, User Management Tool, Linux GUI Tool. . LinuxSecurity.com Team
Google has released a new tool that allows administrators at firms using Google Apps to remotely reset cookies to ensure that sensitive data cannot be accessed if a device is lost or stolen.. Google Apps software engineer Will Smit said in a blog post that the feature offers improved cloud security for organisations concerned that more information is being stored in the cloud than ever before. "The ability to access your data from virtually anywhere enables higher productivity but, like traditional systems that don't run in the cloud, security concerns can arise if a user loses a computer or mobile device that can access sensitive information," he said. "Starting today, administrators can easily invalidate a user's active connection to Google Apps services from the control panel. More specifically, administrators can now reset a user's sign-in cookies to help prevent unauthorised access to their account." Smit explained that the system will log a user out from all web browser sessions, and require new authentication the next time that user attempts to access any Google Apps.. Microsoft 365 unveils improved cloud file recovery tool for optimized digital asset protection.. Google Apps Data Protection, Cloud Security Management, Remote Authentication Solutions. . Alex
Many people use SSH to log in to remote machines, copy files around, and perform general system administration. If you want to increase your productivity with SSH, you can try a tool that lets you run commands on more than one remote machine at the same time. Parallel ssh, Cluster SSH, and ClusterIt let you specify commands in a single terminal window and send them to a collection of remote machines where they can be executed. Do you want to increase your productivity with SSH? Check out this article on 3 parallel SSH tools which let you run commands on multiple machines at the same time. . The link for this article located at linux.com is no longer available. . The link for this article located at linux.com is no longer available.. people, remote, machines, files, around, perform, general, system. . Brittany Day
PuTTY allows you to use your Symbian-powered mobile device to connect securely to a remote computer no matter where you are located. With this tool you can perform various tasks and I bet many of you would like to be able to control their server from the road, we all know problems occur at the least opportune time. . The link for this article located at Net-Security is no longer available. . Explore the way that PuTTY facilitates safe remote connectivity to servers through your Symbian smartphone.. PuTTY, Secure Remote Access, Mobile SSH, Symbian, Server Management. . LinuxSecurity.com Team
SSH is the secure replacement for rlogin, rsh and telnet, which has been used in the past to do remote administration work. Even today some people still like using telnet for administration, even though it actively affects system security, since all commands and passwords are transmitted in cleartext. Since we are aware of the security risk of running a telnet service and want to be better we are not only using SSH, we will set up SSH with public key authentification. . The link for this article located at DebianSec.com is no longer available. . Discover techniques to enhance remote management security with OpenSSH by utilizing public key authentication strategies.. OpenSSH, Secure Remote Administration, Public Key Authentication. . Benjamin D. Thomas
It's a dangerous Internet out there, kids. If you are going to work on remotely connected machines, do it safely. Simple file transfers and interactive sessions have scp and ssh respectively; in fact there is hardly a commercial Web hosting provider left that doesn't support them. For more complicated scenarios we have VPN tools. But what if you need to work with files on a remote server, but find scp tedious in repetition and FreeS/WAN too cumbersome? You might find just what you're looking for in sshfs -- a tool for mounting a remote filesystem transparently and securely as if it were just another directory on your local machine. . sshfs is primarily the work of Miklos Szeredi, a Linux hacker from Budapest who is better-known as the creator of FUSE, the Filesystem in USErspace framework that makes sshfs possible. Szeredi was already working on FUSE when he discovered Florin Malita's similar project named LUFS and its SSHFS filesystem. The link for this article located at Linux.com is no longer available. . sshfs is primarily the work of Miklos Szeredi, a Linux hacker from Budapest who is better-known as t. dangerous, internet, there, going, remotely, connected, machines. . LinuxSecurity.com Team
GFI Software Ltd., recently announced the release of a new version of its network security scanner, GFI LANguard Network Security Scanner (N.S.S.) 6 that can detect all machines and devices connected to the network via a wireless link. It also alerts administrators when suspicious USB devices are connected to the network. . Additionally, the new version includes further Linux security checks. It now incorporates an SSH scripting feature that allows administrators to connect to remote Linux/Unix machines and launch scripts. This feature also enables the creation of custom security checks. The link for this article located at CXOToday is no longer available. . GFI's N.S.S. has introduced upgraded checks for Linux security alongside improved SSH scripting capabilities to bolster network defense.. Network Security Scanner, Linux Security Checks, SSH Scripting, Device Monitoring, Remote Management. . Benjamin D. Thomas
Get the latest Linux and open source security news straight to your inbox.