Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 1 articles for you...
83

User Endorsement Risk From Clickjacking Attack on Facebook

A vulnerability on Facebook forced hundreds of thousands of users to endorse a series of webpages over the holiday weekend, making the social networking site the latest venue for an attack known as clickjacking.. The exploit works by presenting people with friend profiles that recommend The link for this article located at The Register UK is no longer available. . A phishing scam targeted Instagram users, resulting in unauthorized promotions over the festive season.. Clickjacking Threat, Facebook Exploit, User Endorsement Risk. . LinuxSecurity.com Team

Calendar 2 Jun 01, 2010 User Avatar LinuxSecurity.com Team Hacks/Cracks
77

Insights on Insider Threats and User Risks for Database Protection

In all of their frenzy to protect sensitive data from hackers and thieves, many organizations overlook the most likely threat to their databases: authorized users.. While today's headlines might be full of compromises and SQL injection attacks, most database leaks are still caused by end users who have legitimate access to the data, experts say. Yet, according to "Protecting Your Databases From Careless End Users," a new report published today by Dark Reading, many enterprises still don't do enough to protect data from accidental leaks or insider theft. "It sometimes amazes me how little concern companies have for their production data," says James Koopman, owner of the database consultancy Pine Horse. "They allow nearly anyone to plug in shareware, freeware, and demo tools to access sensitive production data -- without any concern for how it might be retrieving, caching, or altering data." The link for this article located at Dark Reading is no longer available. . Although current reports may emphasize data breaches and phishing schemes, the majority of information leaks typically occur through users with access rights.. Database Security, Insider Threats, Data Protection, Access Control. . LinuxSecurity.com Team

Calendar 2 Oct 02, 2009 User Avatar LinuxSecurity.com Team Server Security
83

CSRF Warning: Top Websites Threaten Users' Data and Financial Security

Cross-site request forgery flaw on several prominent Web sites allows an attacker to perform actions on behalf of a victim who is already logged into the site Two Princeton University academics have found a type of coding flaw on several prominent Web sites that could jeopardize personal data and in one alarming case, drain a bank account. The type of flaw, called cross-site request forgery (CSRF), allows an attacker to perform actions on a Web site on behalf of a victim who is already logged into the site. Have you hear about the news that two Princeton University academics have published security flaws in some high traffic sites? Why do you you think these sites are taking their time in fixing the problem? . The link for this article located at InfoWorld is no longer available. . A pair of researchers from Harvard expose XSS vulnerabilities on major platforms, endangering user privacy and possible monetary damage.. CSRF Flaws, Data Protection Threats, Web Application Security. . LinuxSecurity.com Team

Calendar 2 Oct 01, 2008 User Avatar LinuxSecurity.com Team Hacks/Cracks
74

Navigating Single Network Identity Risks and Benefits in Security

Passwords, SecureID cards, pass cards, yet more passwords? I have corporate accounts with my clients, tens of personal accounts and overwhelming numbers of passwords, not to mention the secure ID cards, bank Personal Identification Numbers (PIN) and other accoutrements of the . . . . Passwords, SecureID cards, pass cards, yet more passwords? I have corporate accounts with my clients, tens of personal accounts and overwhelming numbers of passwords, not to mention the secure ID cards, bank Personal Identification Numbers (PIN) and other accoutrements of the modern connected life. How can we possibly remember all our passwords? Yes, I admit it. I do maintain a written file of all my PINs and passwords. Is there a better way to keep track of them all? What if I only needed to memorize one password or even better, use a special card that would tell the computer how to access all of my accounts. The technology to allow a single network identity or ?single signon? already exists today. For some it is the holy grail of network security. For others it can be a nightmare. Imagine if your network identity was appropriated or stolen. It can potentially cost thousands of dollars and months of effort to clear your name. Is single network identity a good idea in this age of network security breaches and ID fraud? The link for this article located at CrossNodes is no longer available. . In today's cybersecurity landscape, the debate over a unified network identity system reveals both benefits and risks, necessitating careful evaluation and robust security measures. Identity Management, Network Security Risks, Single Sign-On, Password Protection. . Anthony Pell

Calendar 2 Jul 15, 2002 User Avatar Anthony Pell Network Security
82

User-Related Risks Pose Serious Threats to US GovNet Security Programs

Security experts have warned that the secure computer network planned by the US Government could be undermined by careless users. The Bush administration, newly focused on security since the 11 September attacks, wants to create a network, called Govnet, to provide . . . . Security experts have warned that the secure computer network planned by the US Government could be undermined by careless users. The Bush administration, newly focused on security since the 11 September attacks, wants to create a network, called Govnet, to provide protected data and voice communications. Richard Clarke, recently named special advisor to the president for cyberspace security, is behind the new initiative and believes it to be vital to future, critical, government operations. But security experts say that the role of the new network needs to be clarified and that it could still be at risk, even if it were segregated from the public internet. The link for this article located at BBC is no longer available. . Cybersecurity analysts caution that the upcoming US Federal secure communications network could be jeopardized due to negligent user behavior.. Secure Network, Government Security, Cybersecurity Initiative, Data Protection. . Anthony Pell

Calendar 2 Oct 17, 2001 User Avatar Anthony Pell Government
74

Massive Cybercriminal Attack Predicted For Internet Users Worldwide

Internet users around the globe are likely to fall victim to a massive cybercriminal attack that will take place by the end of next year, according to a report by Gartner. But the individuals responsible for this worldwide online theft will . . . . Internet users around the globe are likely to fall victim to a massive cybercriminal attack that will take place by the end of next year, according to a report by Gartner. But the individuals responsible for this worldwide online theft will remain anonymous because international law enforcement officials will not have done enough groundwork to apprehend them. Gartner analyst Richard Hunter explained: "Global law enforcement agencies are poorly positioned to combat these trends, leaving thousands of consumers vulnerable to online theft. Cybercriminals can now surreptitiously steal millions of dollars, a few dollars at a time, from millions of individuals simultaneously." The link for this article located at vnunet is no longer available. . Internet users around the globe are likely to fall victim to a massive cybercriminal attack that wil. internet, users, around, globe, likely, victim, massive, cybercriminal, attack. . Anthony Pell

Calendar 2 Apr 02, 2001 User Avatar Anthony Pell Network Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here