The security-oriented Alpine Linux distro has been updated to version 3.14, a new stable release featuring KDE Plasma 5.22, QEMU 6.0, and more! . Five months in the works, Alpine Linux 3.14 is Alpine 3 as another big update for this security-oriented distribution, featuring the latest and greatest KDE Plasma 5.22 desktop environment series, along with the KDE Gear 21.04.2 software suite, for those who want to install the KDE Plasma desktop. But, Alpine Linux is a Linux distribution designed for servers, firewalls, routers, VPNs, etc., so it comes with major updates for packages needed for these type of setups. These include Lua 5.4.3, HAProxy 2.4.0, nginx 1.20.0, njs 0.5.3, Node.js 14.17.0, PostgreSQL 13.3, Python 3.9.5, QEMU 6.0.0, R 4.1.0, and Zabbix 5.4.1. The link for this article located at 9 to 5 Linux is no longer available. . After five months of development, Alpine Linux 3.14 emerges as a significant upgrade, boasting enhanced security capabilities and refreshed software packages.. Security-Oriented Linux, Alpine 3.14 Update, KDE Plasma 5.22, QEMU 6.0, Server Distribution. . LinuxSecurity.com Team
The Document Foundation has released the LibreOffice 7.1 open-source and cross-platform office suite for all supported platforms - a major release that introduces an array of new features and improvements. . The big news that The Document Foundation wants to share with us today is that they’ve released LibreOffice 7.1 Community, a version of the popular office suite that’s supported by volunteers and targeted at the general public, not at enterprises. The labeling of LibreOffice has been discussed a while ago when The Document Foundation explained that splitting its LibreOffice office suite into “Personal” and “Enterprise” editions won’t affect the software’s functionality, availability or license. In fact, it will help evolve the product with new features that you will be able to benefit from. LibreOffice 7.1 Community is supported by volunteers and developers employed by companies sitting in The Document Foundation’s Advisory Board, including Collabora, Red Hat and CIB/Allotropia, and it’s not optimized for the needs of enterprise users, who can opt for long-term support options, professional assistance, custom features and other benefits here. The link for this article located at 9 to 5 Linux is no longer available. . The latest announcement from The Document Foundation is the launch of LibreOffice 7.1, showcasing fresh capabilities and improvements.. LibreOffice, Open-Source Office Suite, Software Improvements. . LinuxSecurity.com Team
Unless you haven't been on the net for a year, you know Transport Layer Security/Secure Socket Layer (TLS/SSL) software, such as OpenSSL, have had numerous serious security problems. Now, Amazon, is introducing a new TLS implementation: "Signal to noise," s2n.. Stephen Schmidt, Amazon's VP of security engineering, said that Amazon, the number one online retailer in the Americas, uses strong encryption not just on its eponymous sales site, but on its cloud services as well. The multiple OpenSSL problems, such as Heartbleed, Freak, and Logjam, have led to "time-consuming operational events, such as software upgrades and certificate rotations." The link for this article located at ZDNet Security is no longer available. . Amazon's latest TLS solution, s2n, bolsters security measures by resolving vulnerabilities found in current systems such as OpenSSL.. TLS Implementation, Amazon s2n, Open Source, Security Engineering. . LinuxSecurity.com Team
The developers of the Typo3 CMS framework have raised the alarm in an email to
The TOR Project is advising users to upgrade to a new version of the software following a hack that compromised three of its servers. TOR, short for "The Onion Router," is a worldwide network of servers that are used to help anonymize people's Web surfing. Web traffic is randomly routed through many servers, masking critical information such as someone's true IP (Internet Protocol) address. . TOR is often used by people who want to enhance their privacy while surfing the Internet, as IP addresses are an important piece of information to collect when monitoring Internet traffic. Web sites will record the IP address of the last exit point out of the TOR network, which could make it appear users have an IP address from a Brazilian ISP when they are actually in Germany. The link for this article located at Network World is no longer available. . VPN alerts subscribers to update applications following a security incident, improving encryption standards. Essential for safe internet usage.. TOR Project, software upgrade, server breach, online privacy. . LinuxSecurity.com Team
I'm ready to announce that Linux Netwosix 1.2 is ready. I have completely rebuilt , upgraded and secured the system. Please, read the Announcement Release. Is based on the powerful and reliable Kernel 2.6.9 and has been created for the requirements of every SysAdmin. Nepote contains the updated packages. You can download Netwosix from our Download Center or from one of our mirrors. Thank you! . . .. What's Netwosix ? ******************* Linux Netwosix is a powerful and optimized Linux distribution for servers and Network Security related jobs. It can also be used for special operations such as penetration testing with its big collection of security oriented software and sources. It's a light distribution created for the requirements of every SysAdmin and it's very portable and highly configurable. Our philosophy is to give greater liberty for configuration to the SysAdmin. Only in this way can he/she configure a powerful and stable server machine. Linux Netwosix also has a powerful ports system (Nepote) similar to the xBSD systems but more flexible and usable. Features ******************* The system has been completely rebuilt, now assures a high security for your network. Linux Netwosix 1.2 resolves all the critical problems discovered into releases 1.0 and 1.1 and now could be considered like one of the most important distribution in this field thanks to its lightweight and clear structure and now it's more configurable and secure. Some features: - New SETUP method - New HOWTO - All packages upgraded to latest and fixed versions. - Very very light iso image fast to download and install (~224MB). - It runs Linux Kernel 2.6.9. - System binaries linked with the GNU C Library, version 2.3.3. - Iptables 1.2.9. - GCC 3.3.3 as the default C compiler. - It runs "nepote" as default Porting Tool (updated with the new packages). - Perl 5.8.4 as perl compiler. The new system is 224 MB and "Xfree86" is optional. The link for this article located at netwosix.org is no longeravailable. . Linux Netwosix 1.2 is a streamlined distribution tailored for system administration and network protection, emphasizing a minimalistic approach.. Netwosix, Server Optimization, Network Security. . LinuxSecurity.com Team
A pair of vulnerability-assessment and remediation tool vendors are separately upgrading their products so that customers more easily can prioritize which networked systems need to be fixed. . . .. A pair of vulnerability-assessment and remediation tool vendors are separately upgrading their products so that customers more easily can prioritize which networked systems need to be fixed. Citadel Security Software Inc. says Version 3.5 of its Hercules desktop and server software includes new technology called AssetGuard that helps companies determine what needs fixing by examining vulnerability-assessment data collected from assorted scanners against an inventory of applications running on the network. Based on written policies, fixes can be prioritized. Hercules 3.5 aggregates data from scanners such as those from eEye Digital Security Inc., Foundstone Inc. and Internet Security Systems Inc. Other enhancements include the ability to query Hercules' management console for information about what types of computers with specific vulnerabilities are running on a sub-net and then scheduling remediation efforts. The link for this article located at ComputerWorld is no longer available. . Providers are improving risk-evaluation instruments to enable more effective prioritization in remediation strategies across digital infrastructures.. Vulnerability Assessment Tools, Network Security Solutions, Software Upgrades. . Anthony Pell
The Wi-Fi Alliance unveiled new security specifications for 802.11b networks, replacing the easy-to-circumvent Wired Equivalent Privacy (WEP) that's now standard. . .. The Wi-Fi Alliance unveiled new security specifications for 802.11b networks, replacing the easy-to-circumvent Wired Equivalent Privacy (WEP) that's now standard . The standards body said Thursday it plans to make the new technology, called Wireless Protected Access (WPA), optional in February and then mandatory about six months later. Most Wi-Fi products will be made WPA-compliant by upgrading software and firmware. The new standards are an interim fix, while a rigorous new security standard called 802.11i is being worked out by a task group within the IEEE 802.11 working group, which is in charge of both IEEE 802.11b and 802.11a standards. However, 802.11i isn't expected to be ratified until Sept. 2003. The link for this article located at internetweek is no longer available. . Explore the latest security enhancements for 802.11b networks as WEP is superseded by WPA by the Wi-Fi Alliance.. Wireless Security,WPA Specifications,Wi-Fi Alliance. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.