Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 594
Alerts This Week
Warning Icon 1 594

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 4 articles for you...
83

Federal Prison Systems: Access Control Issues Raise Security Concerns

Computer systems used to control federal prison facilities are riddled with vulnerabilities that might allow criminals to meddle with cell door opening mechanisms or shut down internal communications systems, according to security researchers.. The vulnerabilities The link for this article located at The Register UK is no longer available. . Significant weaknesses within national incarceration facilities can create pathways for illicit entry, jeopardizing inmate safety and information integrity.. Prison Control Systems, Cyber Threats, Access Control Issues. . LinuxSecurity.com Team

Calendar%202 Nov 09, 2011 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Understanding Linux Security Issues Amid Rising Cyber Threats

A report from British security firm mi2g last week blasted Linux system administrators for their failure to master the operating system's intricacies. It's important, though, to read between the lines before placing the blame solely on IT. As mi2g itself noted, the often chaotic growth of Linux has resulted in a tangle of procedures and a variety of security upgrade policies that make the administrators' job tougher. . . .. A report from British security firm mi2g last week blasted Linux system administrators for their failure to master the operating system's intricacies. It's important, though, to read between the lines before placing the blame solely on IT. As mi2g itself noted, the often chaotic growth of Linux has resulted in a tangle of procedures and a variety of security upgrade policies that make the administrators' job tougher. That growth has made Linux a more appealing target for hackers. But it will also generate more and better security products, and a deeper IT understanding of Linux security needs, policies, and vulnerabilities. A survey taken at the Computer Security Institute's annual conference calls for the same kind of between-the-lines consideration. Most of the 350 IT executives participating in the survey considered their networks to be more secure today than they were a year ago. Yet the same group reported sharp increases in the numbers of attacks their networks are experiencing. Is there a disconnect at work here? Is the increased sense of security delusional? Or is something else going on? The link for this article located at securitypipeline.com is no longer available. . This analysis uncovers the contradiction surrounding the efficacy of Linux administration security in the face of increasing cyber threats.. Linux Administration, Security Insights, IT Challenges, Cyber Resilience. . LinuxSecurity.com Team

Calendar%202 Nov 18, 2004 User Avatar LinuxSecurity.com Team Hacks/Cracks
77

Migration Strategies: Addressing Security Risks in Unix to Linux Shift

The Linux server market is expected to grow by 35% from last year, according to research firm IDC. Many of these Linux systems are replacing Unix in corporations looking to reduce IT costs. However, at the same time, there are more attacks on Linux than ever before. So, if you're considering a migration from your Unix systems to Linux, it's important to keep security in mind.. . .. The Linux server market is expected to grow by 35% from last year, according to research firm IDC. Many of these Linux systems are replacing Unix in corporations looking to reduce IT costs. However, at the same time, there are more attacks on Linux than ever before. So, if you're considering a migration from your Unix systems to Linux, it's important to keep security in mind. Common Unix/Linux vulnerabilities Native Unix and Linux operating systems share many of the same security vulnerabilities. For example, both operating systems don't allow delegation of administrative privileges - particularly tasks that require root-level authority. As a result, many companies find that too many users have more authority than they need while also sharing the root password. Also, both Unix and Linux provide limited logging capabilities by capturing system activity through syslog. However, security information captured in syslog is limiting and may not meet regulatory requirements such as those established by the Health Insurance Portability and Accountability Act or the Gramm-Leach-Bliley Act, nor will it help in troubleshooting and forensics. . Transitioning from Unix to Linux requires careful evaluation of security, including authentication methods, user roles, network security, and timely updates to safeguard your environment. Unix Security, Linux Migration, System Vulnerabilities, IT Cost Reduction. . LinuxSecurity.com Team

Calendar%202 Nov 16, 2003 User Avatar LinuxSecurity.com Team Server Security
74

Mitigating Blaster Worm Threat: Network Security Strategies

Last month, some cretin Out There writes Yet Another Worm called Blaster that can infect whole networks at once. That is, it can infect whole networks of Windows computers whose administrators haven't upgraded their operating system to incorporate the latest security . . . . Last month, some cretin Out There writes Yet Another Worm called Blaster that can infect whole networks at once. That is, it can infect whole networks of Windows computers whose administrators haven't upgraded their operating system to incorporate the latest security patches from Microsoft. One of the side features of these infections was a planned denial of service attack that was supposed to be launched against Microsoft's WindowsUpdate servers Saturday, Aug. 16. Like other worms, Blaster propagates via several Internet-based programs. To alert the user community, various authorities issued dire warnings about how to block the culprit and contain its damage. One of these warnings came from our federal Department of Homeland Security, which issued its alert at the end of July. Several broadband network administrators took it upon themselves to cut off inbound access to the three ports recommended by the feds, specifically ports 135, 139, and 445. This broke several other legitimate applications (including Outlook/Exchange transactions that occur over the public Internet). Several people complained when they were told the only way to connect to their Exchange servers was to install a VPN, use Outlook Web Access, or upgrade to Exchange 2003 (which isn't yet available). Exchange actually uses a bunch of different ports besides 135, for those of you interested. The link for this article located at SecurityPipeline is no longer available. . Last month, some cretin Out There writes Yet Another Worm called Blaster that can infect whole netwo. month, cretin, there, writes, another, called, blaster, infect, whole, netwo. . Anthony Pell

Calendar%202 Aug 27, 2003 User Avatar Anthony Pell Network Security
83

Exploring the Risks Associated with Biometrics in Security Systems

Start with face recognition. The testers found that, depending on the particular system, they could fool it by holding up a photo of an authorized person. Further, these systems have to store pictures of authorized people to compare with whoever is . . . . Start with face recognition. The testers found that, depending on the particular system, they could fool it by holding up a photo of an authorized person. Further, these systems have to store pictures of authorized people to compare with whoever is standing in front of the camera. If a hacker can break into the computer and steal these pictures, they can be displayed on the screen of a laptop, held up to the camera, and ... you guessed it. Systems of greater sophistication watch to see whether the picture moves as a live person does. The testers took a short video clip of an authorized person, held it in front of the camera on a laptop, and ... bingo. Well, how about fingerprints? More bad news. When you put your finger on the reader, your print remains there after you leave. The investigators found that often they could simply cup their hands around the reader and breathe on the old print, made by an authorized user - whereupon it would show up and let them in. The link for this article located at Washington Times / Symantec is no longer available. . As technology advances, advanced biometric systems face challenges from spoofing tactics, exposing vulnerabilities in fingerprint, facial, iris, and voice recognition methods. Biometric authentication, Security risks, Identity deception, Access control, Fingerprint vulnerabilities. . LinuxSecurity.com Team

Calendar%202 Jun 13, 2002 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Thailand Hacker Challenge: Testing Security on 50 Servers Next Month

Hackers will be challenged to penetrate a variety of computer networks early next month with no threat of punishment if they are successful, a network security firm said yesterday. Parinya Homanek, managing director of Net En Tel Co Ltd, said the . . . . Hackers will be challenged to penetrate a variety of computer networks early next month with no threat of punishment if they are successful, a network security firm said yesterday. Parinya Homanek, managing director of Net En Tel Co Ltd, said the first hackers' conference in Thailand would be held on September 3 and 4 with a network of more than 50 powerful servers set up specially for them to try to hack into. The conference is being held to demonstrate the possible vulnerabilities of various severs so that system administrators will be able to plug the security gaps that leave them open to unlawful hacking attempts. The link for this article located at The Nation is no longer available. . Cyber enthusiasts will test their capabilities across various online systems next week in a risk-free competition.. penetration Testing,Hacking Competition,Network Security,System Vulnerabilities. . LinuxSecurity.com Team

Calendar%202 Aug 16, 2001 User Avatar LinuxSecurity.com Team Hacks/Cracks
78

Biometric Authentication: Typing Patterns and Security Risks Assessment

Soto, Government Computer News. Call me paranoid, but I'm in good company. Most biometric security programs -- which identify a person through their biological traits -- store details about a user's unique physical characteristics on a hard drive, and Robert Flores, . . . . Soto, Government Computer News. Call me paranoid, but I'm in good company. Most biometric security programs -- which identify a person through their biological traits -- store details about a user's unique physical characteristics on a hard drive, and Robert Flores, the CIA's chief technology officer, says it's easy enough for a hacker to get at the data. When I quoted Flores's statement to the five biometric vendors in this review, four of them either changed the subject or essentially said, "Well, nothing is foolproof." The representative of one company, Net Nanny Software Inc., not only agreed with Flores but also said that vulnerability is what makes the company's BioPassword effective. The link for this article located at NewsBytes is no longer available. . BioPassword evaluates the nuances of typing patterns for user authentication but faces several vulnerabilities and risks.. Biometric Authentication, User Behavior Analytics, Security Checks, Typing Patterns. . LinuxSecurity.com Team

Calendar%202 Apr 06, 2001 User Avatar LinuxSecurity.com Team Vendors/Products
83

The Critical Importance of Patching in Effective Security Management

As a result, this easily avoidable problem has reached near-epidemic proportions. Making matters more frustrating is knowing that so many losses could have been easily avoided with a few mundane but crucial steps. "I would put patching in the top two . . . . As a result, this easily avoidable problem has reached near-epidemic proportions. Making matters more frustrating is knowing that so many losses could have been easily avoided with a few mundane but crucial steps. "I would put patching in the top two things an admin can do to secure their computers," said Lance Spitzner, coordinator for the security group Honeynet Project. The others are turning off unnecessary services, like serving up Web pages, allowing file transfers, or responding to remote logins. Every day, the underground elements of the Internet use scanners to find servers susceptible to what security experts have taken to calling the "exploit du jour." Depending on the type of flaw and connection speed, anywhere from tens of thousands to millions of Internet addresses can be scanned in a single day. If even less than 1 percent of the scanned servers connected to each address are vulnerable, that can still result in thousands of defenseless possibilities for a hacker. The link for this article located at ZDNet is no longer available. . As a result, this easily avoidable problem has reached near-epidemic proportions. Making matters mor. easily, avoidable, problem, reached, near-epidemic, proportions, making, matters. . LinuxSecurity.com Team

Calendar%202 Jan 24, 2001 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":0,"type":"x","order":4,"pct":0,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200