Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -1 articles for you...
74

Exploring Major Security Flaws In Cloud Vendor Practices

When security experts sound the alarm about enterprises embracing cloud computing with little understanding of the risks, it's usually a case where the expert -- working for a vendor -- is making a pitch for their employer's products. That's all well and good, but here's the problem -- some of them have trouble keeping their own side of the cloud clean. . That, according to Nils Puhlmann, co-founder of the Cloud Security Alliance and previously CISO for such entities as Electronic Arts and Robert Half International. Puhlmann recently contacted CSOonline about one example where a sizable security vendor made multiple mistakes in the cloud. He spoke on the condition that the vendor's name is kept anonymous, as he is working with the company to help address its problems. The link for this article located at Network World is no longer available. . In the fast-evolving cloud computing sphere, security vendors have faltered in key aspects, risking significant harm for enterprises relying on their services. Cloud Computing Risks, Security Vendor Analysis, Cyber Risk Management. . Anthony Pell

Calendar 2 Oct 01, 2009 User Avatar Anthony Pell Network Security
83

Miscommunication In Open Source Security Reporting: An Analysis

All vendors have made mistakes at some time, and no vendor seems to be any better or worse than the other. Fortunately, these mistakes do not appear to be malicious -- just the result of a game of Chinese Whispers. The . . . . All vendors have made mistakes at some time, and no vendor seems to be any better or worse than the other. Fortunately, these mistakes do not appear to be malicious -- just the result of a game of Chinese Whispers. The object of the game of "Chinese Whispers" is to see how a phrase changes as it passes to several speakers. Players sit in a circle, and the first player thinks of a phrase and whispers it into the ear of the next player. The second player whispers it to the third, and so on, until it gets back to the to the first player who announces both starting and ending phrases. The two versions are usually wildly different. Are application developers, Linux vendors, and the media playing this game when they report vulnerabilities in open source software? I think so -- what compelled me to write this is when I reviewed how a recent security vulnerability got reported. The link for this article located at LinuxWorld is no longer available. . Reporting vulnerabilities in open source can cause misunderstandings. Vendors' poor responses may downplay severity, delaying crucial fixes and risking user safety. Open Source Reporting, Security Analysis, Vendor Communication. . LinuxSecurity.com Team

Calendar 2 Jan 23, 2002 User Avatar LinuxSecurity.com Team Hacks/Cracks
78

Vendor Approaches to Software Security Disclosure and Public Criticism

Indeed, many vendors, network administrators and security companies adopt a policy of less-is-more when it comes to the question of how much information to release to the public about a particular software bug, exploit or attack. . . .. Indeed, many vendors, network administrators and security companies adopt a policy of less-is-more when it comes to the question of how much information to release to the public about a particular software bug, exploit or attack. The reasoning goes something like this: If they release too many details, not only will they give hackers more ammunition for their attacks, but also -- and more importantly for the vendor whose software or standard was breached -- they'll open themselves up to public scrutiny and criticism. Microsoft Corp., for example, is notoriously tight-lipped about security flaws in its products, but usually takes a beating in the press nonetheless any time a bug is found. The link for this article located at ZDNet / eWeek is no longer available. . Many companies and cybersecurity experts adopt a minimalist strategy when revealing system vulnerabilities to mitigate public criticism.. Software Security Disclosure, Vendor Policies, Public Disclosure. . LinuxSecurity.com Team

Calendar 2 Feb 11, 2001 User Avatar LinuxSecurity.com Team Vendors/Products
78

Trust and Standards in Open Source Software Reliability

The issue is more than one of semantics. If open source is to develop as a mainstay of computing, supporters say, users must have faith that products entered into the open-source community meet commonly accepted criteria. "The open . . .. The issue is more than one of semantics. If open source is to develop as a mainstay of computing, supporters say, users must have faith that products entered into the open-source community meet commonly accepted criteria. "The open source community's peer-review process directly serves the interests of current and future users," says Eric Raymond, head of the Open Software Initiative. "It does so by holding vendors up to a high standard for reliability, security, interoperability, and transparency. Some vendors (like IBM and SGI) are up to this challenge and are embracing open source. Some are not." The link for this article located at ZD Net News -- Â Â is no longer available. . Investigating the impact of confidence in open-source software on its dependability and benchmarks in technology.. Open Source Standards, Software Reliability, Vendor Practices, Community Trust, Interoperability. . LinuxSecurity.com Team

Calendar 2 Mar 30, 2000 User Avatar LinuxSecurity.com Team Vendors/Products
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here