Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 598
Alerts This Week
Warning Icon 1 598

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 40 articles for you...
76

Linux Foundation's Open Metaverse Group Drives Interoperability Standards

The Open Metaverse Foundation (OMF), launched last week by the Linux Foundation , was created to implement the protection and interoperability standards required to drive metaverse adoption at scale, according to Royal O’Brien, a Linux Foundation GM and the executive director of OMF. . The metaverse is in a state of buzz and varying opinions on adoption timelines, with some saying this year will be a proving one for its momentum, and others claiming the components needed won’t be in sync until later this decade. OMF’s goals are to gather as many ecosystem players to catalyze that timeline under eight foundational interest groups (FIGs): users, transactions, digital assets, simulations and virtual worlds, artificial intelligence (AI) , networking, security and privacy, and legal and policy. The foundation is currently developing its narrative overview publicly and collaboratively on Discord , which it plans to wrap up by next week and start distributing to its FIGs. . The virtual reality landscape is witnessing varied perspectives on the speed of uptake as OMF initiates measures to improve compatibility protocols.. Metaverse Foundation, Linux Interoperability, Open Standards, Digital Ecosystem. . Brittany Day

Calendar%202 Feb 06, 2023 User Avatar Brittany Day Organizations/Events
79

Citi's Software Supply Chain Tool Donation to OpenSSF Initiative

The financial services company's prototype system based on CNCF's software supply chain security guidelines joins OpenSSF's $150 million open source standards campaign. . A series of software supply chain security standards efforts under the Open Source Security Foundation have emerged this month as the open source community races to get ahead of mounting cyberattacks. The latest is Secure Software Factory, a prototype toolchain created by financial services company Citi. It combines open source projects such as Tekton and Kyverno to follow a set of best practices established by a Cloud Native Computing Foundation (CNCF) whitepaper last year. Citi donated Secure Software Factory this week to the OpenSSF , a Linux Foundation subgroup created to foster open source security projects such as Sigstore and Google's Supply chain Levels for Software Artifacts ( SLSA ). The link for this article located at TechTarget is no longer available. . Investment bank Citi bolsters software supply chain integrity through a contribution of a prototype to OpenSSF, aiding in the advancement of industry standards.. Software Supply Chain Security, OpenSSF Standards, CNCF Projects, Open Source Toolchain, Cybersecurity Efforts. . LinuxSecurity.com Team

Calendar%202 May 20, 2022 User Avatar LinuxSecurity.com Team Security Projects
79

Linux Foundation's Digital Vaccination Credentials Initiative for COVID-19

The COVID-19 Credentials Initiative (CCI) - hosted by Linux Foundation Public Health (LFPH) - is working to standardize an approach to vaccination credentials. . To control the spread of COVID-19, nations have implemented a variety of containment strategies including lockdowns, inbound travel restrictions, and more. In recent weeks, millions of people in the US have received a COVID-19 vaccine. As the vaccination rollout continues, some semblance of normality could return later in 2021. So-called vaccine passports , a person's proof of vaccination, could enable travel and entry into spaces in the months ahead. The COVID-19 Credentials Initiative (CCI) is hosted by Linux Foundation Public Health (LFPH) and is working with a number of partners to build these solutions and standardize an approach to vaccination credentials. . In response to COVID-19, the Linux Foundation Public Health aims to enhance public trust by promoting standardized digital vaccination credentials for safer travel.. COVID-19 Initiative, Open Source Development, Digital Vaccination Credentials. . LinuxSecurity.com Team

Calendar%202 Feb 09, 2021 User Avatar LinuxSecurity.com Team Security Projects
79

seL4 Microkernel Joins Linux Foundation to Advance Security Initiatives

The seL4 microkernel - the world's first operating system (OS) kernel that is proved secure - is now back by the Linux Foundation. . The Linux Foundation , the nonprofit organization enabling mass innovation through open source, today announced it will host the seL4 Foundation, the nonprofit organization established by Data61, the digital specialist arm for Australia’s national science agency CSIRO. The seL4 microkernel is the world’s first operating system (OS) kernel that is proved secure; it is designed to ensure the security, safety and reliability of real-world critical computer systems. The new Foundation aims to accelerate the development of seL4 and related technologies, and under the Linux Foundation will provide a global, independent and neutral organization for funding and steering the future evolution of seL4. Founding members include Cog Systems, DornerWorks, Ghost Locomotion, HENSOLD Cyber and UNSW Sydney. The trustworthiness of embedded computing systems is vital to improving the security of critical systems around the world to safeguard them from cyber threats. This is particularly paramount in industries including avionics, autonomous vehicles, medical devices, critical infrastructure and defense. The seL4 microkernel is the world’s first operating system with a proof of implementation correctness and presents an unparalleled combination of assurance, generality and performance, making it an ideal base for building security- and safety-critical systems. The seL4 Foundation provides a forum for developers to collaborate on growing and integrating the seL4 ecosystem. The link for this article located at Linux Foundation is no longer available. . The Open Source Initiative supports the OpenAPI Initiative to promote the evolution of the premier specification for API descriptions.. seL4 Microkernel, Linux Foundation, Embedded Computing, Cybersecurity Innovations. . LinuxSecurity.com Team

Calendar%202 Apr 08, 2020 User Avatar LinuxSecurity.com Team Security Projects
79

ProtonVPN Launches Open Source Applications For Increased Transparency

ProtonVPN has handed over application code to the open source community in a bid to improve transparency and security standards. . On Tuesday, the virtual private network (VPN) provider, also known for the ProtonMail secure email service, said that the code backing ProtonVPN applications on every system -- Microsoft Windows, Apple macOS, Android, and iOS -- is now publicly available for review in what Switzerland-based ProtonVPN calls "natural" progression. "There is a lack of transparency and accountability regarding who operates VPN services, their security qualifications, and whether they fully conform to privacy laws like GDPR," the company says. "Making all of our applications open source is, therefore, a natural next step." The link for this article located at ZDNet is no longer available. . NordVPN boosts credibility by making its software code publicly available for greater safety.. ProtonVPN, Open Source Applications, VPN Transparency, Security Standards. . LinuxSecurity.com Team

Calendar%202 Jan 22, 2020 User Avatar LinuxSecurity.com Team Security Projects
67

SSL's Status Declared: Implications for Data Protection Standards

On January 30, 2015, QSAs received the latest edition of the Council. We are working with industry stakeholders to determine the impact and the best way to address the issue. While we do not have the final publication date, our goal is to keep you apprised of the progress and to provide you with advanced notification for these pending changes. We are also preparing several FAQs that will accompany release of the revised standards. Should you have any questions, please contact your Program Manager. The link for this article located at PCI Guru is no longer available. . The recognition of SSL as a standard protocol marks a key development in digital security, enhancing data protection and fostering user trust and compliance. SSL Security, Data Protection, Security Standards, Cryptography Standards. . LinuxSecurity.com Team

Calendar%202 Feb 11, 2015 User Avatar LinuxSecurity.com Team Cryptography
74

Impact Of Evolving Security Standards On Cloud Computing

Any enterprise looking to use cloud computing services will also be digging into what laws and regulations might hold in terms of security and privacy of data stored in the cloud. At the Cloud Security Alliance Congress in Orlando this week, discussion centered on two important regulatory frameworks now being put in place in Europe and the U.S. . The European Union, with its more than two dozen countries, has had a patchwork of data-privacy laws that each country created to adhere to the general directive set by the EU many years ago. But now there's a slow but steady march toward approving a single data-privacy regulation scheme for EU members. The link for this article located at Network World is no longer available. . The landscape of cloud computing encounters shifting security benchmarks and legal frameworks, particularly in the U.S. and EU, related to safeguarding personal information.. Cloud Computing, Data Privacy, Security Regulations, EU Data Protection, Compliance Requirements. . Anthony Pell

Calendar%202 Nov 09, 2012 User Avatar Anthony Pell Network Security
67

768-Bit RSA Encryption Cracked By Researchers: Global Impact

Researchers have decomposed a 768-bit number with 232 decimal places into its two prime factors and published a paper with their results. The number is the string released as "RSA-768" under the now defunct RSA Challenge. As a result, RSA encryptions with 768-bit keys must, from now on, be considered cracked. . It took the team of researchers from Switzerland, Japan, Germany, France, the US and the Netherlands about two and a half years to perform the factorisation. The first step of the calculation, polynomial selection, required half a year on a cluster consisting of 80 PCs, while the second and considerably more labour-intensive sieving step took about two years on a cluster of several hundred computers. According to the researchers, a single Opteron processor with 2 Gbytes of RAM would have needed about 1,500 years to complete the sieving step. The link for this article located at H Security is no longer available. . It took the team of researchers from Switzerland, Japan, Germany, France, the US and the Netherlands. researchers, decomposed, 768-bit, number, decimal, places, prime, factors. . LinuxSecurity.com Team

Calendar%202 Jan 08, 2010 User Avatar LinuxSecurity.com Team Cryptography
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200