Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 29 articles for you...
76

Analyzing Hardware Hacking and Security Insights From Black Hat USA 2015

Software gets much of the hacking spotlight, perhaps understandably so. But the physical infrastructure that runs all that code is just as susceptible to messing with, though it takes a different set of knowledge and techniques. Today's Training trio touch on the more solid side of that divide.. So, the box sits in front of you, its secrets beckoning. Where to start? One great place would be Hands-On Hardware Hacking and Reverse Engineering, a Training which will teach hardware-hacking and reverse-engineering techniques commonly used against electronic products and embedded systems. Topics will include tool tutorials, circuit board analysis and modification, embedded security, and common attack vectors. Pay attention, because at the end you'll have to apply these skills to defeat the security of a custom circuit board. The link for this article located at Dark Reading is no longer available. . Exploring hardware manipulation and reverse engineering techniques can strengthen embedded system security. Tools like side-channel analysis and fault injection help identify vulnerabilities.. Hardware Hacking, Reverse Engineering, Embedded Protection. . Alex

Calendar%202 Jul 22, 2015 User Avatar Alex Organizations/Events
83

Edward Snowden's Journey From NSA Contractor To Skilled Hacker

In 2010, while working for a National Security Agency contractor, Edward J. Snowden learned to be a hacker. He took a course that trains security professionals to think like hackers and understand their techniques, all with the intent of turning out . But the certification, listed on a r The link for this article located at NY Times is no longer available. . Edward Snowden, a former NSA contractor, became an influential figure in privacy and digital security after revealing extensive government surveillance programs.. Edward Snowden, Hacking Skills, Cybersecurity Techniques, Security Training. . LinuxSecurity.com Team

Calendar%202 Jul 05, 2013 User Avatar LinuxSecurity.com Team Hacks/Cracks
76

HackMiami 2013 Live Training: SQL Injection and Network Breaches

The HackMiami 2013 Hackers Conference, taking place on Miami Beach, will feature comprehensive training seminars that seek to facilitate the skills of SQL injection, smartphone attacks, and enterprise network breaches. . Hackers will gather in Miami Beach to demonstrate realistic hands-on hacking, training, live seminars and competitions. The Hackmiami 2013 Hacker's Conference seeks to bring together the most skilled individuals within the information security and the digital underground. The link for this article located at PR Web is no longer available. . Cyber enthusiasts will convene in Miami for immersive hacking workshops, interactive presentations, and contests showcasing skills in cyber offense techniques.. HackMiami, Hacking Training, Digital Skills, Network Security. . Alex

Calendar%202 May 01, 2013 User Avatar Alex Organizations/Events
74

Networking Skills Enhancement at UTS: Challenges in Virtual Labs

If you want to train large groups of students on how to use and deploy networking equipment, you. During the server administration mini-conference at Linux.conf.au in Canberra today, James Lucas and Li Bing Chen explored some of the challenges involved in setting up virtualised network testing and training laboratory at the University of Technology Sydney (UTS). Those five labs are typically used for networking management courses (both full academic subjects and shorter certification courses), covering both specific hardware and broader concepts around networking, security and wireless. Each allows up to 30 students. The link for this article located at Lilfehacker AU is no longer available. . Creating virtual network labs for student training at Linux.conf.au involves tackling several challenges such as infrastructure limitations, user familiarity, and resource allocation. Networking Training, Virtual Labs, Server Administration, Linux Conference. . Anthony Pell

Calendar%202 Jan 28, 2013 User Avatar Anthony Pell Network Security
76

UK Government and Sophos Linux Security Challenge Overview

The government- and Sophos-sponsored challenge is designed to drum up interest in learning Linux security skills, which are needed for protecting web infrastructure and, in turn, companies. Hackers are being invited to take part in a Linux security challenge next week that is sponsored by the UK government and Sophos. The government has been running a Cyber Security Challenge (CSC) scheme since 2010, in an attempt to draw more young people into the computer security business. The link for this article located at ZDNet Blogs is no longer available. . Programmers are welcomed to a cybersecurity competition next month to develop techniques essential for safeguarding digital domains.. Linux Challenge, Cybersecurity Skills, Web Security. . Dave Wreski

Calendar%202 Aug 21, 2012 User Avatar Dave Wreski Organizations/Events
79

Elevate Your Skills With the Certified Ethical Hacker Credential

As security breaches continue to grow both in frequency and in the amount of damage they cause (according to Symantec, the average organization incurred $470,000 in losses from endpoint cyber attacks in 2011), penetration testing is becoming increasingly important for organizations of all sizes. For IT professionals seeking to expand their knowledge in that area, the EC-Council's Certified Ethical Hacker (CEH) credential offers a solid base of expertise.. According to EC-Council senior director Steven Graham, the organization first began offering the credential in 2003. "At that point, there was a gap in education and certification programs training IT security practitioners," he says. "We saw good coverage in the market for security fundamentals and getting people generally aware of networks The link for this article located at eSecurity Planet is no longer available. . Enhance your knowledge in cybersecurity by pursuing the Certified Ethical Hacker certification offered by the EC-Council, designed specifically for technology experts.. Certified Ethical Hacker, Cybersecurity Skills, EC-Council, IT Training. . LinuxSecurity.com Team

Calendar%202 May 03, 2012 User Avatar LinuxSecurity.com Team Security Projects
74

Fundamentals Of Data And Communication Protection For Corporate Laptops

In the first article of this two-part series, I looked at physical protection of laptop computers outside the office. Today we'll review fundamentals of protecting data and data communications. This pair of articles is designed to be useful in security-awareness training for employees who take corporate laptop computers out of the office.. All computers today include a BIOS password that is stored in a special semi-permanent memory call CMOS registers. Without the password, it may be difficult to start your computer; however, criminals and ordinary technicians know simple methods for resetting the CMOS registers. The link for this article located at Network World is no longer available. . Master essential techniques for safeguarding data and communications tailored for mobile professionals utilizing company-issued laptops.. Data Security, Communication Protection, Remote Work Guidance. . Alex

Calendar%202 Feb 23, 2011 User Avatar Alex Network Security
79

Explore Damn Vulnerable Linux For Ethical Hacking Insights

If you can't exploit it, you can't secure it. I don't know if that quote has been said before, but if you are deeply interested about computer security or ethical hacking, that should be your main mantra. . To fully learn how to secure a computer program, you must know how to break it and find vulnerabilities. In relation to this, there is a unique Linux distribution that is primarily created to help teach you about software security, its name is Damn Vulnerable Linux (DVL). Damn Vulnerable Linux is a Slackware-based distro that is intentionally loaded with broken, ill-configured, outdated, and exploitable software for educational purposes. It is a 1.8GB live DVD that features easily breakable versions of Apache, MySQL, PHP, and FTP and SSH daemons. It also includes a good number of tools to help users compile, debug, and break applications running on these services such as GCC, GDB, NASM, strace, ELF Shell, DDD, LDasm, LIDa, etc. You can install Damn Vulnerable Linux natively on a PC, boot it from a USB flash drive, or install it using any virtualization software. The link for this article located at Junauza is no longer available. . To thoroughly protect a software application, acquire skills to spot and exploit weaknesses by utilizing WebGoat.. Damn Vulnerable Linux, Ethical Hacking Training, Software Exploitation. . LinuxSecurity.com Team

Calendar%202 Oct 29, 2010 User Avatar LinuxSecurity.com Team Security Projects
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200