The Windows Subsystem for Linux 2 will bypass the Windows 10 firewall and any configured rules, raising security concerns for those who use the feature - the main concern being a lack of awareness of this change. . In a blog post today, Mullvad VPN explained that their product includes an 'Always require VPN' option that blocks Internet access via the Windows Firewall unless connected to the VPN. After Mullvad received a tip from a user, it was determined that WSL2 Linux distributions bypass the Windows 10 firewall and its configured rules, and prevent the VPN's 'Always require VPN' security feature from working. . NordVPN highlights concerns regarding Docker's interaction with the OS, which may compromise user data encryption methods.. Windows Firewall, WSL2, VPN Access. . Brittany Day
Privacy advocates are up in arms after the Indian government began quietly rolling out a Rs.4 billion(. The scheme is initially thought to have been conceived as a response to the threat of terrorism, such as the 2008 Mumbai attacks which killed over 150 people and injured hundreds more. The link for this article located at The Register UK is no longer available. . The national surveillance initiative raises debates on personal freedom amid efforts to combat criminal activity.. Central Monitoring System, Privacy Policy, Government Surveillance. . LinuxSecurity.com Team
Apple is taking steps to address the Java vulnerabilities behind the Flashback Trojan outbreak. But Java isn't the only attack vector for OS X -- and Apple users can no longer cling to the belief that Macs are virtually immune to malware.. Are Macs as insecure as PCs? It's a notion that once was unthinkable, but increasingly is being said out loud. Recently, Mac OS X users have been at risk thanks to a Java-based attack vector. The Flashback malware specifically targeted OS X, and took advantage of the fact that Apple had not yet updated its users to a fully patched version of Java. More than half a million Macs were infected by the malware, which turned the victimized machines into a remote-controlled botnet. The link for this article located at eSecurity Planet is no longer available. . Investigating Mac security: Do Macs face the same level of threats as Windows machines?. Mac Security, Flashback Trojan, Apple Malware. . LinuxSecurity.com Team
Google has taken the unprecedented step of warning millions of users whose PCs it believes are infected with fake security software and other malware, the company said yesterday. But some security experts are leery of Google's move.. The warning appears as a bright yellow banner that reads "Your computer appears to be infected," at the top of the page after users conduct a search with Google. Google has started to slap this warning at the top of its search results when it suspects that the PC is infected with malware. The link for this article located at Network World is no longer available. . Google has issued a cautionary message to users regarding the risk of malware infections on their PCs. This warning raises significant implications and concerns surrounding online security.. Google Alerts, Malware Threats, User Safety, Infection Protection. . Anthony Pell
Some two thirds of popular Apple iPhone applications transmit users' UDIDs, leading to potential security concerns, a new study has warned.. Eric Smith, Assistant Director of Information Security and Networking at Bucknell University in Lewisburg, Pennsylvania, discovered 68 percent of the 57 top applications in the Apple iTunes App Store sent out UDID information, back to a remote server, owned either by the application developer or an advertising partner. Popular iPhone applications tested included those from Amazon, Chase Bank, Target, Sams Club, Best Buy, Barnes & Noble, eBay, PayPal, Bank of America, Wells Fargo, Fidelity and America Express. The link for this article located at Tech World is no longer available. . Recent research indicates that widely-used Android applications may leak users' IMEI numbers, intensifying worries regarding personal data safety.. User Tracking, Mobile Security, Data Privacy, Application Security. . LinuxSecurity.com Team
Sony has announced that its latest firmware update will disable the "Other OS" option on the PS3. This means that the PS3 will no longer support the Linux OS.. The decision to drop the Other OS option ultimately comes down to security, according to Sony. Noted PS3 hacker George Hotz released an exploit last month that allowed read/write access to the PS3 through Linux and the Other OS option. Sony estimates that only a small percentage of PS3 owners use the Other OS option, but the Playstation Blog is being overrun by complaints by fans who hope this is just an April Fools prank by Sony. The post on the update at the Playstation Blog has this to say as a rebuttal. "For most of you, this won The link for this article located at The Examiner is no longer available. . Microsoft restricts Xbox 360's Linux functionality for safety reasons, impacting user options and access.. PlayStation 3,Firmware Update,Other OS Security. . LinuxSecurity.com Team
Hackers have managed to find a way around one of the key antipiracy protections built into Windows 7. Ordinarily, the operating system requires users to activate their copy of Windows 7 within 30 days. However, a recently outlined method allows the normal notifications to be turned off.. The software doesn't actually get confirmed as legitimate, but users are able to keep using the product indefinitely. Microsoft confirmed on Friday it is aware of the technique, but said that it is working to shore up the activation procedure. "We're aware of this workaround and are already working to address it," a Microsoft representative said in a statement, which also urged customers to only use genuine software, noting the fake stuff can contain malware and other bad things. The link for this article located at CNET is no longer available. . Cyber intruders unveil a technique to circumvent Windows 7 validation, enabling perpetual access without verification.. Windows7 Activation, Software Exploit, Security Risk. . LinuxSecurity.com Team
This is an excellent lesson in the security problems inherent in trusting proprietary software: After two years of attempting to get the computer based source code for the Alcotest 7110 MKIII-C, defense counsel in State v. Chun were successful in obtaining the code, and had it analyzed by Base One Technologies, Inc. Draeger, the manufacturer maintained that the system was perfect, and that revealing the source code would be damaging to its business. They were right about the second part, of course, because it turned out that the code was terrible.. The link for this article located at is no longer available. . Analysis of vulnerability concerns within closed-source applications and defects discovered in Alcotest 7110 MKIII-C's codebase.. Alcotest Security Flaws, Proprietary Software Issues, Source Code Analysis. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.