Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 3 articles for you...
83

Facebook Scam: Trick Users in India Hack Their Own Accounts

Security experts have warned Facebook users in India not to fall for a new scam which tricks victims into . Symantec security response manager Satnam Narang revealed in a blog entry that a post began circulating last week on Facebook featuring a video with tips on how to hack accounts. The link for this article located at The Register UK is no longer available. . Caution: A novel fraud scheme emerges on Instagram, deceiving users into compromising their own profiles via deceptive clips.. Social Media Scam, Account Security, Cyber Threat Awareness. . LinuxSecurity.com Team

Calendar%202 May 02, 2014 User Avatar LinuxSecurity.com Team Hacks/Cracks
67

OpenSSL Security Advisory: Allegations of a Potential Scam by Hacker

Security experts have expressed doubts about a hacker claim that there. A group of five hackers writes in a posting on Pastebin that they worked for two weeks to find the bug and developed code to exploit it. They The link for this article located at PC World is no longer available. . Security experts express doubts regarding claims by hackers alleging the discovery of a vulnerability in OpenSSL following the Heartbleed incident, labeling it as a potential hoax.. OpenSSL Threat,Bug Exploit Analysis,Hacker Claims,Encryption Security. . LinuxSecurity.com Team

Calendar%202 Apr 28, 2014 User Avatar LinuxSecurity.com Team Cryptography
82

UK Student Paul McLoughlin Receives Sentence for Istealer Scam

A UK university student has avoided jail over a malware-based scam that allowed him to break into the personal computers and webmail accounts of an estimated 100 victims.. Paul McLouglin, 22, a Salford University student from Liverpool, tricked victims into downloading password-stealing software, called Istealer, which he had disguised as a code-generation key for online games. McLouglin pleaded guilty on 11 April, prior to a sentencing hearing at London's Southwark Crown Court on Monday where he received an eight months sentence The link for this article located at The Register UK is no longer available. . Paul McLouglin, 22, a Salford University student from Liverpool, tricked victims into downloading pa. university, student, avoided, malware-based, allowed, break. . Anthony Pell

Calendar%202 May 18, 2011 User Avatar Anthony Pell Government
83

Nszones DNSBL Scam Exposes Data Theft Risks and Cybersecurity Issues

Spamhaus has uncovered a fake spam filter company which was pirating and selling DNSBL data stolen from major anti-spam sysjavascript:submitbutton('save');tems including Spamhaus, CBL and SURBL, republishing the stolen data under the name "nszones.com". . Nszones operates a 'remove your IP' scam charging naive internet users to be removed from the pirated nszones DNSBLs. Nszones also attempts to sell 'commercial subscriptions' to the pirated nszones DNSBLs. Owned by Liberian-registered Aegeas Enterprises S.A., based in Greece, nszones.com was discovered pirating DNSBL data via rsync from Spamhaus, CBL and SURBL and republishing the pirated data under the hostnames 'bl.nszones.com, sbl.nszones.com, dyn.nszones.com and ubl.nszones.com' which nszones.com was then selling as its own work. Secret seed data which Spamhaus inserts into Spamhaus DNSBL zones to catch data pirates was found in bl.nszones.com, sbl.nszones.com and dyn.nszones.com. The link for this article located at spamhaus is no longer available. . Nszones operates a 'remove your IP' scam targeting naive users, exposing serious cybersecurity concerns in spam filtering.. Nszones Scam, Cybersecurity Risks, DNSBL Exploitation, Spam Filtering Risks. . LinuxSecurity.com Team

Calendar%202 Mar 31, 2010 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Newly Emerging Pharming Threats in Online Banking Security Risks

If the phishers don't get you the pharmers will, police have warned. People are now getting wary of the scam called phishing - where people are sent emails claiming to be from their bank asking them to "confirm" their account details and passwords. . A recent phishing attack on Commonwealth Bank customers fooled very few people into disclosing their internet banking details. But now comes an even more dangerous scam called pharming, where hackers secretly redirect users' computers from financial sites to the scammers' fake sites that look almost exactly the same as the real ones. . A recent phishing attack on Commonwealth Bank customers fooled very few people into disclosing their. phishers, don't, pharmers, police, warned, people, getting. . LinuxSecurity.com Team

Calendar%202 May 29, 2006 User Avatar LinuxSecurity.com Team Hacks/Cracks
81

Exploring Phishing and E-Crime Threats to Internet Users Today

Internet crime often starts with phishing, the practice of duping a user into revealing bank account or log-in credentials via a fraudulent Web site. Phishers send out reams of e-mail bait that say users' account information has expired or needs updating. The e-mail includes links to a site that may look very similar to their bank Web site, but isn't. Once those credentials are obtained, criminals use the information in a variety of creative and costly scams. . "The Web is under attack," said Phillip Hallam-Baker, principal scientist at VeriSign Inc, who gave a session Thursday on Internet crime at the W3C (World Wide Web) conference in Edinburgh, Scotland, this week. The link for this article located at www.infoworld.com is no longer available. . The Internet faces a threat, cautioned Kim Reyes about the rise in cyberattacks and their ramifications on individuals.. E-crime, Phishing Attacks, Internet Threats, Cybersecurity Risks, Credential Theft. . LinuxSecurity.com Team

Calendar%202 May 26, 2006 User Avatar LinuxSecurity.com Team Privacy
83

Russian Scammers Steal €1 Million from French Online Banking Customers

Russian scammers used key logging Trojans to steal more than a €1m from French people accessing online bank accounts. The Trojans were sent by email but were not activated until people accessed their online bank accounts. Then the Trojan forwarded on user names and passwords to the crooks. . The link for this article located at TheRegister.co.uk is no longer available. . Cybercriminals from Russia have focused on French banking clients, illicitly acquiring more than €1 million through account breaches.. Russian Scammers, Keylogger Threat, Online Banking Security, Cyber Crime. . LinuxSecurity.com Team

Calendar%202 Feb 09, 2006 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Investigating Political Donation Scams and Their Phishing Techniques

Like other common "phishing" schemes, which involve e-mail requests that seem to be from trusted sources such as eBay or Citibank, the Kerry messages asked potential donors to go to an outside Web site to give money. Those Web sites, one registered in India, the other in Texas, were not affiliated with the Kerry campaign. . . .. An Internet security company says some e-mails asking for donations to U.S. presidential candidates are scams trying to steal unwary consumers' credit card numbers. Researchers for SurfControl, a company that offers e-mail filtering software, say they found two examples of suspect e-mails last weekend, both purporting to be from Democrat John Kerry's campaign. Like other common "phishing" schemes, which involve e-mail requests that seem to be from trusted sources such as eBay or Citibank, the Kerry messages asked potential donors to go to an outside Web site to give money. Those Web sites, one registered in India, the other in Texas, were not affiliated with the Kerry campaign. . An Internet security company says some e-mails asking for donations to U.S. presidential candidates . other, common, 'phishing', schemes, which, involve, e-mail, requests, trusted. . LinuxSecurity.com Team

Calendar%202 Aug 04, 2004 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200