Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -3 articles for you...
79

Open-Source AMD SEV Firmware Enhances Security For EPYC Virtual Machines

While I have been eagerly following the AMD openSIL project for open-source CPU initialization that will eventually replace AGESA, today AMD announced a new open-source firmware drop: the SEV firmware has been made open-source. . The firmware necessary for AMD's Secure Encrypted Virtualization (SEV) had been made open-source and is publicly available. AMD Secure Encrypted Virtualization provides a variety of security protections for virtual machines (VMs) working on EPYC platforms. AMD announced the open-source firmware for SEV as part of "[sharing] the technical details of technology powering innovative confidential computing." AMD SEV is used by EPYC virtual machines on Amazon AWS, Google Cloud, Microsoft Cloud, and Oracle Compute Infrastructure. The link for this article located at Phoronix is no longer available. . Community-driven firmware for AMD's Secure Encrypted Virtualization (SEV) enhances secure virtualization capabilities on EPYC CPUs.. Secure Encrypted Virtualization, AMD SEV, Open-Source Firmware, EPYC Security, Virtual Machine Protection. . LinuxSecurity.com Team

Calendar%202 Sep 03, 2023 User Avatar LinuxSecurity.com Team Security Projects
79

Introducing Qubes OS Alpha: Advanced Rootkit Defense via Virtualization

Security researcher Joanna Rutkowska has released an open source operating system, called Qubes, designed to offer better protection against rootkits.. The Qubes operating system is currently in the alpha stage, according to Rutkowska, who blogged about the release on her website. The system is based on the Xen hypervisor, X, and Linux, and can run most Linux applications, according to the project website. It uses a concept that she calls security by isolation, allowing users to separate security domains into lightweight virtual machines, which she calls AppVMs. Files and clipboard items can be shared between the virtual machines (VMs). The system also virtualizes the graphical user interface, enabling applications in different AppVMs to share the same desktop, according to the project website. "We have designed the GUI virtualization subsystem with two primary goals: security and performance. Our GUI infrastructure introduces only about 2,500 lines of C code (LOC) into the privileged domain (Dom0), which is very little, and thus leaves not much space for bugs and potential attacks," noted the project website. "At the same time, due to smart use of Xen shared memory our GUI implementation is very efficient, so most virtualized applications really feel as if they were executed natively." The link for this article located at infosecurity is no longer available. . Explore the advanced rootkit defense in Qubes OS Alpha, enhancing security through virtualization and isolation practices.. Qubes OS, Secure Virtualization, Rootkit Defense. . LinuxSecurity.com Team

Calendar%202 Apr 12, 2010 User Avatar LinuxSecurity.com Team Security Projects
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200