It's depressing for security professionals to see just how many of the vulnerabilities on the new SANS/FBI Top 20 List have CVE numbers in the 1999-xxxx range--meaning that they were identified and fixed years ago on some systems. Newer problems . . . . It's depressing for security professionals to see just how many of the vulnerabilities on the new SANS/FBI Top 20 List have CVE numbers in the 1999-xxxx range--meaning that they were identified and fixed years ago on some systems. Newer problems appear in each category, but far too many bear old CVE numbers. The SANS/FBI Top 20 List tracked actual attacks and listed them according to the frequency of their occurrence. My previous article examined Windows vulnerabilities on the list. Now, I'm going to look at the UNIX vulnerabilities, nearly all of which also apply to Linux. The link for this article located at ZDNet is no longer available. . The changing landscape of Linux/UNIX security poses significant challenges, as numerous age-old vulnerabilities continue to impact systems worldwide.. Top Security Threats,SANS FBI List,UNIX Vulnerabilities. . LinuxSecurity.com Team
The System and Network Security group is is meeting with several key players in the information security arena on Friday to discuss and outline the 10 top security threats. "Tomorrow (June 1) the FBI, Justice Department, GSA, the CIAO . . . . The System and Network Security group is is meeting with several key players in the information security arena on Friday to discuss and outline the 10 top security threats. "Tomorrow (June 1) the FBI, Justice Department, GSA, the CIAO and CERT/CC will join with SANS and two dozen leading security gurus to unveil the Top Ten Security Threats on the Internet. These are vulnerability clusters that account for the majority of all successful attacks. At noon (EST) on Thursday, you'll find the Top Ten posted at https://www.sans.org/ along with guidance on how to fix them. This is one of the most important consensus research projects we've ever undertaken - an opportunity to make a measurable dent in the vulnerability of the Internet. Please take a leadership role in your organization to get these vulnerabilities fixed." . The System and Network Security group is is meeting with several key players in the information secu. system, network, security, group, meeting, players, information. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.