Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 511
Alerts This Week
Warning Icon 1 511

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 16 articles for you...
83

Turkish Hacker Strikes Sony Websites with Web Defacement Attack

Two Sony websites were hacked yesterday by a Turkish hacker (thanks to Roberto Preatoni of Zone-H.org for heads up and explanation). The two site URLs are: https://www.sonymusic.it/ and . As of 12:30 AM Pacific Standard time on the USA west coast, the handy work is still there for all to see. The very same hacker hit Sony music in Europe 9 days ago. Fortunately for Sony, these kinds of hacks are more of a statement than malicious activity. The link for this article located at is no longer available. . As of 12:30 AM Pacific Standard time on the USA west coast, the handy work is still there for all to. websites, hacked, yesterday, turkish, hacker, (thanks, roberto, preatoni, zone-h. . LinuxSecurity.com Team

Calendar%202 May 31, 2006 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Web Defacers Warn Users Against Phishing Scams Effectively

A small percentage of Web sites illegally set up for phishing scams have been defaced with warnings to potential victims. While illegal, some Internet watchers believe the trend could be beneficial.Groups fighting against online criminals intent on phishing have gained allies from another species of underground miscreant: Web-site defacers. . On Thursday, Internet monitoring firm Netcraft reported that some users of the company's anti-phishing toolbar followed links to fake financial sites only to find them defaced with anti-phishing messages. While defacements in the past have consisted mainly of sophomoric messages and political diatribe, the recent attacks by Web-site defacers on phishing fraud could actually help warn online users before they become victims, said Paul Mutton, a services developer for Internet monitoring provider Netcraft. The link for this article located at SecurityFocus is no longer available. . Cybersecurity analysts discover fraudulent websites altered with alerts, aiming to inform unsuspecting users about online fraud.. Web Defacement, Phishing Attacks, Anti-Phishing Efforts, Online Security Awareness. . LinuxSecurity.com Team

Calendar%202 May 26, 2005 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

South Africa: Major Hacker Attack Defaces 73 Websites by FBH Group

In the biggest hacker attack in South Africa since 1 January 2004, hackers successfully defaced more than 73 local websites over the weekend, Reinhardt Buys of IT law firm Buys said on Monday. Even the website Hack.co.za, famous in the internet underground and security community, crashed under a repeated attack, Buys said. . . .. In the biggest hacker attack in South Africa since 1 January 2004, hackers successfully defaced more than 73 local websites over the weekend, Reinhardt Buys of IT law firm Buys said on Monday. Even the website Hack.co.za, famous in the internet underground and security community, crashed under a repeated attack, Buys said. At 12.21am on Sunday, a hacker group referred to as "FBH" hacked into the hack.co.za website. The home page of the site was defaced with a logo. The site was hosted on a Linux platform and an Apache server. According to Zone-H, a group monitoring world wide hacking activity, "FBH" is an acronym for "Federal Bureau of Hackers" operating from Pakistan. The link for this article located at Mail and Guardian Online is no longer available. . In a staggering digital breach, more than 60 online platforms in South Africa faced defacement, signaling a profound vulnerability in web security protocols.. Hacker Attack, South Africa, Web Defacement, Cybersecurity News. . LinuxSecurity.com Team

Calendar%202 Jun 01, 2004 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Defacer's Challenge: Unsecured Sites Targeted During Hacking Contest

Computer hackers vying in a global contest on Sunday defaced a slew of Web sites, but the damage was confined to the Internet's backwater of small, unsecured sites, security officials said. The "Defacer's Challenge" got off to a quick start . . . . Computer hackers vying in a global contest on Sunday defaced a slew of Web sites, but the damage was confined to the Internet's backwater of small, unsecured sites, security officials said. The "Defacer's Challenge" got off to a quick start on Sunday with 300 attacks reported minutes after the 0600 GMT official start, said Roberto Preatoni, founder of Estonia-based Zone-H.org, a site that tracks hack attacks. "There were no big names," he said. But he added his own site, www.zone-h.org, was knocked offline for much of the day because of a high volume of legitimate visitors and apparent attempts by hackers to bog down his computer servers. According to the contest Web site https://www.defacers-challenge.com which was taken offline last week, hackers were urged to prove their skills by defacing as many Web sites as possible during a six-hour span on Sunday. Points were awarded for the number and type of computer servers they infiltrated, the rules stated. The link for this article located at CNN is no longer available. . The hacking competition led to a variety of website disruptions, primarily affecting vulnerable sites lacking proper security measures, while avoiding significant targets.. Web Defacement, Cyber Attack Trends, Security Risks, Hacking Contest. . LinuxSecurity.com Team

Calendar%202 Jul 07, 2003 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

The Evolution of Web Defacement and the Need for Self-Regulation

A few years ago, web defacements were largely limited to individual sites, conducted by small groups of security enthusiasts with a bone to pick. Whether it was a political message, a technical statement or an expression of love to a girlfriend, . . . . A few years ago, web defacements were largely limited to individual sites, conducted by small groups of security enthusiasts with a bone to pick. Whether it was a political message, a technical statement or an expression of love to a girlfriend, the cracking of websites had a certain allure to them that made even the medium-level enthusiast raise his or her eyebrows. Those days are gone. Today, large groups of loosely-affiliated people work to attack as many websites as possible - cracking hundreds of sites in a single action. Taking the fun out of it. Replacing a well-researched site "hack" with a McCrack. With actions that defy the mantra of exposing vulnerabilities in an ethical way, the burgeoning community known as `script kiddies' are contributing to their own downfall. The link for this article located at TechFocus is no longer available. . Web defacement has evolved from individual acts of rebellion to organized protests, merging artistry with aggression as hacking groups gain prominence.. web defacement, ethical hacking, self-regulation, cybersecurity practices. . LinuxSecurity.com Team

Calendar%202 Jul 07, 2003 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Mitnick Defacement Incident: Security Lessons from the Attack

Do you want to know how Mitnick got defaced? The true story behind the hack. To deface Mitnick's site it was enough to go on your windows desktop, create a new webfolder and name it with . .. Do you want to know how Mitnick got defaced? The true story behind the hack. To deface Mitnick's site it was enough to go on your windows desktop, create a new webfolder and name it with . On January 30th 2003, hacker BugBear defaced Mitnick's website at DefensiveThinking: zone-h We at Zone-H dug a little bit and discovered how the site was defaced. The attacker simply took advantage from the fact that DefensiveThinking administrator forgot to set up the policies for Frontpage extensions. To deface Mitnick's site it was enough to go on your windows desktop, create a new webfolder and name it with The lack of security set to Frontpage allowed the attacker to view the entire DefensiveThinking websystem as a folder of the attacker windows computer. To deface the webpage it was enough to create an HTML file with the defacement message and drag&drop it into the newly created webfolder. As simple as told. This configuration mistake allowed the attacker to view, browse, read all the files in DefensiveThinking's web structure. When Mitnick, interrogated by friends at The Register stated: "The compromised computer is a public system on a network separate from production systems at Defensive Thinking. No customer information was released nor was in danger of being compromised", we really hope it went in that way. More on the Permissions Problems with FrontPage Extensions at . The link for this article located at zone-h.org is no longer available. . Do you want to know how Mitnick got defaced? The true story behind the hack. To deface Mitnick's sit. mitnick, defaced, story, behind, deface, mitnick's. . LinuxSecurity.com Team

Calendar%202 Feb 11, 2003 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

FT Conferences: Defaced By Hackers Due To Configuration Error

The FT Conferences Web site was defaced overnight by mischievous crackers promoting a Russian DJ. Defacement archive Zone-H reports that hackers broke in using a mistake in the Web site's configuration to post pictures of Vasya Strelnkikov, a famous Russian DJ. The defacement, which carries a note for the site's administrator saying no files were changed plus the name of the supposed attacker. . .. The FT Conferences Web site was defaced overnight by mischievous crackers promoting a Russian DJ. Defacement archive Zone-H reports that hackers broke in using a mistake in the Web site's configuration to post pictures of Vasya Strelnkikov, a famous Russian DJ. The defacement, which carries a note for the site's administrator saying no files were changed plus the name of the supposed attacker , can be seen www . The hacker told Zone-H he'd carried out the defacement "just for fun". We doubt the FT would see the defacement in quite the same light. The FT conference Web site is now back up and running. So the attack was only a minor inconvenience which only illustrates that many high profile Web sites continue to be vulnerable to Web vandals and pranksters. FT Conferences.com runs on an Apache Web server running on a Linux platform, Netcraft reports. ® The link for this article located at TheRegister is no longer available. . The Tech Summit portal encountered a website breach by hackers advertising a Brazilian band, highlighting weaknesses in security measures.. Web Defacement, Hacker Attack, Site Vulnerability, Linux Hosting. . LinuxSecurity.com Team

Calendar%202 Nov 12, 2002 User Avatar LinuxSecurity.com Team Hacks/Cracks
83

Evil Angelica's Parody Assault on U.S. Government Sites

Mocking the efforts of a defacement team known as the "Deceptive Duo," an online vandal who refers to herself as "Evil Angelica" has stuck at least two Web sites since Monday. The tongue-in-cheek attacker, calling herself "The Mystical Mono," replaced the . . . . Mocking the efforts of a defacement team known as the "Deceptive Duo," an online vandal who refers to herself as "Evil Angelica" has stuck at least two Web sites since Monday. The tongue-in-cheek attacker, calling herself "The Mystical Mono," replaced the home pages at Eligance.com and Saad.de with a parody of the document that has been posted at dozens of U.S. government sites by the Deceptive Duo since late April. The Duo's defacements, which included systems operated by the Federal Aviation Administration and the U.S. Navy, stated that the team's mission was to "take necessary measures to ensure that the public is aware of The United States of America's lack of security." The link for this article located at Newsbytes is no longer available. . Ridiculing the antics of the 'Dishonest Duo,' a digital prankster mimics official websites in a humorous bid to poke fun at authority.. Web Defacement, Cyber Attacks, Online Pranks, Government Security. . LinuxSecurity.com Team

Calendar%202 May 07, 2002 User Avatar LinuxSecurity.com Team Hacks/Cracks
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200