Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 6 articles for you...
209

Open Source Challenges: Security Risks And Software Maintenance

Open source may be the most viable option for most companies today but it comes with its own set of problems too. . Many people support the use of open source software (OSS). After all, why would we keep trying to build code that addresses issues that have already been resolved by others? Why not share the information and progressively and iteratively enhance the current open source solutions? These egalitarian values, however perhaps fundamental to civilization in general, not to mention software, nonetheless include conflicts that have been a problem for millennia. The problem with open source software security is that just because anyone can view the source code doesn’t imply they will. There are extensively used open-source projects that are only being maintained by a limited number of engineers. These engineers are unable to provide their time and effort completely voluntarily since they also need to pay their bills. . Explore the landscape of open-source vulnerabilities and the potential threats that modern organizations encounter when safeguarding essential software applications.. Open Source Software, Security Challenges, Software Maintenance. . Brittany Day

Calendar 2 Oct 09, 2022 User Avatar Brittany Day Security Trends
209

Abandoned Open Source Code Risks For Commercial Software Security

Adopting open-source software and technology has the potential to improve an organizations' security posture if this technology is properly monitored and maintained. A new report from Synopsys indicates that many organizations are falling down on the job, resulting in serious security issues. . Outdated or abandoned open source components are persistent in practically all commercial software, putting enterprise and consumer applications at risk from security issues, license compliance violations, and operational threats, according to the Synopsys 2020 Open Source Security and Risk Analysis Report released Tuesday. Synopsys researchers analyzed more than 1,250 commercial code bases. The Synopsys Cybersecurity Research Center (CyRC) examined the code base audits performed by the Black Duck Audit Services team. The report highlights trends and patterns in open source usage within commercial applications. It provides insights and recommendations to help organizations better manage their software risk. . Neglected or obsolete open source libraries expose proprietary software to vulnerabilities, underscoring issues in oversight.. Open Source Management, Software Risk Analysis, Security Recommendations, Commercial Software Risk. . Brittany Day

Calendar 2 May 13, 2020 User Avatar Brittany Day Security Trends
210

Understanding Open-Source Threats and Mitigation Strategies

Neglecting basic security practices exposes companies to long-standing security threats. Learn what you can do to mitigate the risk that security vulnerabilities pose to your business: . Currently, about 96 percent of the applications in the enterprise market use open-source software. On the one hand, this makes development easier for both developers and third-party vendors. On the other hand, it presents risks and exposes some die-hard vulnerabilities. The reason behind the open-source vulnerability relies exactly on its openness, as the same code is seen by all users, including attackers. Therefore, once they find an exploit or flaw, they will use it to cause harm, retrieving sensitive data from systems that have not been updated. Attackers can lurk inside a network for months undetected, as happened with the Equifax breach in 2017 , which exposed 145 million customers due to outdated software. The link for this article located at Security Today is no longer available. . Overlooking security in open-source projects can leave organizations vulnerable to enduring risks. Explore effective defense measures.. Open Source Vulnerability, Enterprise Security, Security Practices. . Brittany Day

Calendar 2 Aug 20, 2019 User Avatar Brittany Day Security Vulnerabilities
83

Schneider Electric: Critical Flaw Poses Risk To Power Plants

A severe vulnerability in a widely used industrial control software could have been used to disrupt and shut down power plants and other critical infrastructure.. Researchers at security firm Tenable found the flaw in the popular Schneider Electric software, used across the manufacturing and power industries, which if exploited could have allowed a skilled attacker to attack systems on the network. The link for this article located at ZDNet is no longer available. . Security analysts from Tenable have identified a critical vulnerability in Schneider Electric's software, raising alarms about potential threats to essential infrastructure stability.. Schneider Electric Security, Control Software Risks, Infrastructure Vulnerabilities. . LinuxSecurity.com Team

Calendar 2 May 02, 2018 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Lenovo PC Superfish Advertising Software Security Issues Addressed

In a statement to Ars Technica, Adi Pinhas, CEO of Superfish Inc. said his company's pre-installed advertising software on Lenovo PCs poses no security risk . Pinhas' statement centers on recent news that his company's software, Visual Discovery, poses a significant risk to consumers. This risk was compounded by the fact Lenovo pre-installed the software on systems that shipped between September and December of 2014. The link for this article located at CSO Online is no longer available. . Superfish's executive addresses concerns regarding the Visual Discovery application that has been implicated in security issues on Lenovo devices; the situation described.. Superfish Visual Discovery, Lenovo PC Security, Advertising Software Risk. . LinuxSecurity.com Team

Calendar 2 Feb 23, 2015 User Avatar LinuxSecurity.com Team Hacks/Cracks
82

GAO Report Reveals Risks in Defense Software from Foreign Suppliers

Its hard to help wondering if this might give Green Hills Software just the boost they've been looking for. To quote from the article, "The Defense Department's control of the source of weapons software came under fire today in a report issued by the General Accounting Office, which said overseas production of software creates an unacceptable security environment." . . .. The Defense Department's control of the source of weapons software came under fire today in a report issued by the General Accounting Office, which said overseas production of software creates an unacceptable security environment. "DOD acquisition and software security policies do not fully address the risk of using foreign suppliers to develop weapon system software," auditors wrote in the report. "The current acquisition guidance allows program officials discretion in managing foreign involvement in software development, without requiring them to identify and mitigate such risks. Moreover, other policies intended to mitigate information system vulnerabilities focus mostly on operational software security threats, such as external hacking and unauthorized access to information systems, but not on insider threats, such as the insertion of malicious code by software developers." The report said military officials recently adopted initiatives that could curb the threat, but they have not yet implemented the initiatives throughout the department. Auditors cited weapons development as a particular concern, given the potential ramifications should an enemy infect software with a malicious code or a Trojan horse, the report said. The link for this article located at fcw.com is no longer available. . The Defense Department's control of the source of weapons software came under fire today in a report. wondering, might, green, hills, software, boost, they've, looki. . Anthony Pell

Calendar 2 May 27, 2004 User Avatar Anthony Pell Government
82

Exploring IT Security Risks: Internet Vulnerabilities And Concerns

We can't rely any longer on the comforting urban legend that the Internet is impervious to attack. The Internet is a massive collection of remotely accessible, often poorly maintained networks supported by software systems with little diversity and a history of . . . . We can't rely any longer on the comforting urban legend that the Internet is impervious to attack. The Internet is a massive collection of remotely accessible, often poorly maintained networks supported by software systems with little diversity and a history of serious security flaws. Fragile software is one major area of risk. The January 1990 systemwide meltdown of AT&T's phone network, the August 1996 nine-state power grid failure and the April 1997 partial Internet collapse were all tremendously destructive accidents. What if these systems are skillfully targeted? Another concern is the vulnerability of the Internet to physical attack. While the Net is resilient to individual routes dropping off, a few well-placed attacks at major peering points, at cable choke points at bridges and tunnels, or on cross-country runs beside isolated rail lines would be very damaging. A chemical fire in Baltimore's Howard Street tunnel disrupted area Internet traffic for days last July. The link for this article located at eWeek is no longer available. . Cybersecurity is a pressing concern since network infrastructures are prone to breaches, and software weaknesses pose serious threats. Discover key challenges in IT protection.. Internet Threats, Network Vulnerabilities, IT Security Strategies. . Anthony Pell

Calendar 2 Jul 03, 2002 User Avatar Anthony Pell Government
74

DNS Issues Threaten Internet Security And Network Stability

A flaw in software that supports the Internet's DNS (Domain Name System) for translating text-based Web addresses to numeric IP (Internet Protocol) addresses can put Internet-connected systems at risk. . .. A flaw in software that supports the Internet's DNS (Domain Name System) for translating text-based Web addresses to numeric IP (Internet Protocol) addresses can put Internet-connected systems at risk , experts warned. The flaw lies in two versions of the DNS resolver library, which is not only used in DNS servers, but also in network hardware such as routers and switches, said Joost Pol, a security consultant at Pine Internet in The Hague, Netherlands, on Monday. "This code was written a long time ago and distributed for free, it is widespread," said Pol, who wrote the first alert on the issue last week. "This is essential software that runs on the client and on the server." The link for this article located at Infoworld is no longer available. . Detecting vulnerabilities in DNS mechanisms that jeopardize systems linked to the internet, impacting both network reliability and security measures.. Dns Issues, Network Risk, Internet Security, Software Vulnerabilities, Threat Assessment. . Anthony Pell

Calendar 2 Jul 02, 2002 User Avatar Anthony Pell Network Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here