Alerts This Week
Warning Icon 1 905
Alerts This Week
Warning Icon 1 905

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":555,"type":"x","order":1,"pct":78.72,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.26,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.2,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 1 articles for you...
210

Linux Kernel Security Advisory: High Severity DoS Flaws Resolved

Five high severity Linux network security vulnerabiities have been found and fixed. Patch your systems immediately to protect your servers against DoS attacks! . Young and rising Linux security developer Alexander Popov of Russia's Positive Technologies discovered and fixed a set of five security holes in the Linux kernel's virtual socket implementation. An attacker could use these vulnerabilities ( CVE-2021-26708 ) to gain root access and knock out servers in a Denial of Service (DoS) attack. With a Common Vulnerability Scoring System (CVSS) v3 base score of 7.0, high severity, smart Linux administrators will patch their systems as soon as possible. . Critical vulnerabilities in Linux network protocols have been identified and resolved. Prompt application of updates is recommended to protect your systems.. Linux Network Threats, Kernel Security, High Severity Patches. . Brittany Day

Calendar%202 Mar 04, 2021 User Avatar Brittany Day Security Vulnerabilities
82

US Government Cybersecurity Struggles Amid White House Role Reductions

Amid a report today that the Trump White House plans to cut the administration's cybersecurity coordinator position altogether, new data shows how US federal government agencies continue to struggle to close security holes in their software.. Politico reported that the administration has eliminated the White House cybersecurity position, which was recently vacated by former head Rob Joyce, who has returned to the National Security Agency. Politico said it had obtained an email to the White House National Security Council staff from John Bolton aide Christine Samuelian: "The role of cyber coordinator will end," in an effort to "streamline authority" in the NSC, which includes two senior cybersecurity directors, she said in the email, according to Politico. The link for this article located at DarkReading is no longer available. . Federal entities encounter persistent threats in cybersecurity as significant shifts in regulations impact crucial roles within the government.. US Cybersecurity, Government Cyber Policies, Federal Security Coordination. . Brittany Day

Calendar%202 May 16, 2018 User Avatar Brittany Day Government
77

PHP 5.2.12 Security Advisory: Critical Fixes Against Key Threats

The PHP developers have released version 5.2.12 of their popular programming language, fixing over 60 bugs mainly to increase stability, but also closing some security holes. While PHP 5.3 has been available since mid 2009, backwards compatibility issues with various popular PHP applications have prevented many users from upgrading. Since, as a result, the 5.2 branch is still used on numerous systems, the developers continue to update this branch. . The current update particularly prevents attackers from bypassing the safe_mode and open_basedir security functions in connection with the tempnam() and posix_mkfifo() functions. The new max_file_uploads option prevents potential DoS attacks when uploading files by limiting the number of files per upload request. Furthermore, the $_SESSION variable is now less susceptible to manipulations, and the htmlspecialchars() PHP function for converting special characters in HTML code offers enhanced string checking. All of article The link for this article located at H Security is no longer available. . The current update particularly prevents attackers from bypassing the safe_mode and open_basedir sec. developers, released, version, their, popular, programming, language, fixing. . LinuxSecurity.com Team

Calendar%202 Dec 18, 2009 User Avatar LinuxSecurity.com Team Server Security
82

EAS Advisory: Security Holes Allow Threats and False Alerts

The US Emergency Alert System (EAS) that lets officials instantly interrupt radio and TV broadcasts to provide emergency information in a crisis suffers from security holes that leave it vulnerable to denial of service attacks, and could even permit hackers to issue their own false regional alerts, federal regulators acknowledged Thursday. . . .. The US Emergency Alert System (EAS) that lets officials instantly interrupt radio and TV broadcasts to provide emergency information in a crisis suffers from security holes that leave it vulnerable to denial of service attacks, and could even permit hackers to issue their own false regional alerts, federal regulators acknowledged Thursday. "Security and encryption were not the primary design criteria when EAS was developed and initially implemented," the Federal Communications Commission (FCC) wrote in a public notice launching a review of the system. "Now, however, emergency managers are becoming more aware of potential vulnerabilities within the system. For example, the complete EAS protocol is a matter of public record and potentially subject to malicious activations or interference." The EAS was launched in 1997 to replace the cold-war era Emergency Broadcast System known best for making the phrase "this is only a test" a cultural touchstone. Like that earlier system, the EAS is designed to allow the President to interrupt television and radio programming and speak directly to the American people in the event of an impending nuclear war, or a similarly extreme national emergency. The system has never been activated for that purpose, but state and local officials have found it a valuable channel for warning the public of regional emergencies, including the "Amber Alerts" credited with the recovery of 150 abducted children. The link for this article located at TheRegister is no longer available. . The US Emergency Alert System (EAS) that lets officials instantly interrupt radio and TV broadcasts . emergency, alert, system, (eas), officials, instantly, interrupt,radio, broadcasts. . Anthony Pell

Calendar%202 Aug 13, 2004 User Avatar Anthony Pell Government
79

PHP 4.3.7 Security Advisory: Remote Code Execution Risk

The open-source PHP Group has released a fix for a pair of security holes that could be exploited to execute arbitrary code on remote PHP servers. The flaws affect PHP versions 4.3.7 and prior and version 5.0.0RC3 and prior. The final version of PHP 5.0, which was released earlier this week, is not affected. . . .. The open-source PHP Group has released a fix for a pair of security holes that could be exploited to execute arbitrary code on remote PHP servers. The flaws affect PHP versions 4.3.7 and prior and version 5.0.0RC3 and prior. The final version of PHP 5.0, which was released earlier this week, is not affected. Fixes have been included in the updated PHP 4.3.8, and the PHP Group is strongly enco The link for this article located at Internet News is no longer available. . The collaborative community of PHP developers has issued a patch addressing vulnerabilities that might be leveraged to run untrusted code.. PHP Security, Remote Code Execution, Security Flaws. . LinuxSecurity.com Team

Calendar%202 Jul 19, 2004 User Avatar LinuxSecurity.com Team Security Projects
79

Sardonix Project Faces Challenges in Linux Code Security Audits

It seemed like a good idea at the time. Set up a Web site that allows users and developers alike to check which pieces of Linux code have been checked for security holes. The project, dubbed Sardonix, was a classic open source solution to a clear problem. . . .. It seemed like a good idea at the time. Set up a Web site that allows users and developers alike to check which pieces of Linux code have been checked for security holes. The project, dubbed Sardonix, was a classic open source solution to a clear problem. The scheme's originator, Crispin Cowan, chief research scientist at WireX Communications, said, "Auditing is needed not just because some developers refuse to read or follow such standards, but also because humans make mistakes, and may fail to completely or correctly follow all rules perfectly." Yet few became involved because, according to Cowan, there's no glory in auditing security holes. Funded initially by the US defence establishment body Defense Advanced Research Projects Agency (DARPA), the research grant aiming to centralise what was and remains a fairly loosely structured review process dried up nine months ago. The link for this article located at TechWorld.com is no longer available. . The cybersecurity portal SecuVault intended to assess software but struggled to gain participation because of insufficient rewards.. Sardonix Project, Linux Code Review, Open Source Auditing. . LinuxSecurity.com Team

Calendar%202 Feb 04, 2004 User Avatar LinuxSecurity.com Team Security Projects
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":555,"type":"x","order":1,"pct":78.72,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.26,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.82,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.2,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here