Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -1 articles for you...
82

EFF Raises Concerns Over US Intelligence Software Disclosure Policies

It. The digital watchdog said on Monday it received a handful of heavily redacted documents from the Office of the Director of National Intelligence (ODNI), which it sued last July after it and the National Security Agency moved too slowly on a Freedom of Information Act (FOIA) request.. The digital watchdog said on Monday it received a handful of heavily redacted documents from the Off. digital, watchdog, monday, received, handful, heavily, redacted, documents. . Anthony Pell

Calendar%202 Mar 31, 2015 User Avatar Anthony Pell Government
83

PS3 Hacker Releases Hypervisor Insights After Sony Raid

A Playstation 3 hacker says he has released information about reverse engineering hypervisor technology used in the PS3 after his home in Germany was raided earlier this week, reportedly at Sony's request.. In a comment to a post on his PS3 Linux and Hyper Reverse Engineering Blog, Graf-chokolo writes in the comments section: "Guys, SONY was today at my home with police and got all my stuff and accounts. So be careful from now on." After several readers expressed doubt about the legitimacy of the post, he says in another comment: "Guys, I don't joke, it's serious. And to prove it, I kept my word and uploaded all my HV reversing stuff. Upload it everywhere so SONY couldn't remove it easily. Grab it guys, it contains lots of knowledge about HV and HV procs." The link for this article located at CNET is no longer available. . In a comment to a post on his PS3 Linux and Hyper Reverse Engineering Blog, Graf-chokolo writes in t. playstation, hacker, released, information, about, reverse, engineering, hypervisor, technol. . LinuxSecurity.com Team

Calendar%202 Feb 25, 2011 User Avatar LinuxSecurity.com Team Hacks/Cracks
78

Internet Security Systems Revised Guidelines on Software Flaws Disclosure

Internet Security Systems, which has been criticized for publicly releasing information about security problems in software before giving application developers time to deal with holes, has issued a revised set of guidelines for how it will handle security warnings. . .. Internet Security Systems, which has been criticized for publicly releasing information about security problems in software before giving application developers time to deal with holes, has issued a revised set of guidelines for how it will handle security warnings . The Atlanta-based ISS posted the guidelines on its Web site Monday, along with a statement from Chris Rouland, director of the company's X-Force group of security experts, whose aim is to determine online threats and issue information about them. Security researchers need to have standards that take into account the public's need to know about vulnerabilities but also "give ample consideration to software vendors working to remedy issues in their products," the statement said. The guidelines, posted as a six-page document, include four phases: discovery, vendor notification, customer notification, and public disclosure. The guidelines are the same for all vendors, so developers of open-source software and proprietary developers receive equal treatment. The link for this article located at PCWorld is no longer available. . Cyber Defense Council updates protocols for revealing vulnerabilities, aiming to harmonize user awareness with creator requirements.. Security Policy, Software Disclosure, Open-Source Standards. . LinuxSecurity.com Team

Calendar%202 Dec 04, 2002 User Avatar LinuxSecurity.com Team Vendors/Products
82

FBI's Carnivore Software Under Scrutiny For Privacy Compliance

The Federal Bureau of Investigation is under increasing pressure to disclose the secret blueprints for its Carnivore surveillance system so independent technical experts can verify that the software monitors only the Internet communications of criminal suspects. . The Federal Bureau of Investigation is under increasing pressure to disclose the secret blueprints for its Carnivore surveillance system so independent technical experts can verify that the software monitors only the Internet communications of criminal suspects. The link for this article located at ZDNet is no longer available. . The Federal Bureau of Investigation is under increasing pressure to disclose the secret blueprints f. federal, bureau, investigation, under, increasing, pressure, disclose, secret, blueprints. . Anthony Pell

Calendar%202 Jul 25, 2000 User Avatar Anthony Pell Government
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200