Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Stay Ahead With Linux Security News

Filter%20icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":2,"type":"x","order":2,"pct":66.67,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found 145 articles for you...
76

Fourth Global WarDrive 2004: Enhance Global Awareness for Wireless Security

The WWWD provides a snapshot of the security posture of currently deployed wireless access points throughout the world. During the Third WorldWide WarDrive, which took place in July 2003, over 88,000 unique access points were discovered worldwide. The statistics compiled for the WWWD have become the defacto standard for statistics used by many media outlets and wireless security vendors to further generate public awareness of wireless security issues. . . . . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Announcing the Fourth WorldWide WarDrive (WWWD) 12-19 June, 2004 The WorldWide WarDrive is an effort by security professionals and hobbyists to generate awareness of the need by individual users and companies to secure their access points. The goal of the WorldWide WarDrive (or WWWD) is to provide a statistical analysis of the many access points that are currently deployed. We feel that many end users are not aware that the factory or "default" settings on Access Points do not take any security measures into account. By providing these statistics we hope that end users will become aware of the need to take simple measures to secure their access points. The WWWD provides a snapshot of the security posture of currently deployed wireless access points throughout the world. During the Third WorldWide WarDrive, which took place in July 2003, over 88,000 unique access points were discovered worldwide. The statistics compiled for the WWWD have become the defacto standard for statistics used by many media outlets and wireless security vendors to further generate public awareness of wireless security issues. The Fourth WorldWide WarDrive will take place 12-19 June 2004. The WorldWide WarDrive has teamed with the Wireless Geographic Logging Engine (WiGLE www.wigle.net) to provide real time maps and statistics as data from each area is uploaded. This is a departure from past events where statistics and maps were compiled at the conclusion of the week long WWWD. Also in conjunction with the announcementof the Fourth WorldWide WarDrive, the Church Of WiFi is proud to announce that an updated version of WarKizNiz is available at / WarKizNiz accepts input from Kismet log files and converts them into NetStumbler .ns1 format. Coordination of drives throughout the world is done at the WorldWide WarDrive Forums located at As in the past, discussions pertaining to the WWWD can also be conducted on the WarDriving mailing list ( ). New for WWWD4 is the creation of a mailing list devoted solely to wireless security issues. To join this list, hosted by Michigan Wireless go to . Media persons interested in articles or interviews should email This email address is being protected from spambots. You need JavaScript enabled to view it. with MEDIA INQUIRY in the subject line. Roamer This email address is being protected from spambots. You need JavaScript enabled to view it. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFAaez9kdZkhH2Wha0RAkfDAKDMjmCfjkLPRKxoCJvoHZk7qTvXPgCg50GN qZ9Q1ejTIESTPXvpR6kYuWM= =SfsA -----END PGP SIGNATURE----- . Participate in the Global CyberSecure Challenge focusing on network safety and vulnerabilities from July 5-12, 2023.. Fourth WorldWide WarDrive, Wireless Access Points, WiGLE Statistics, WarDriving Events. . Anthony Pell

Calendar%202 Apr 07, 2024 User Avatar Anthony Pell Organizations/Events
77

Build A Secure Router With EFF: Join The Open Wireless Initiative

DIGITAL RIGHTS GROUP the Electronic Frontier Foundation (EFF) is asking hackers to help it with its plans to build a secure but open router.. The EFF has released source code for such a machine that runs on the Netgear WNDR3800, and its hope is that the security community will download and run with it. "EFF is releasing an experimental hacker alpha release of wireless router software specifically designed to support secure, shareable Open Wireless networks. This release is a work in progress and is intended only for developers and people willing to deal with the bleeding edge," it said. The link for this article located at The Inquirer is no longer available. . The EFF has unveiled a new open-source framework for a fortified router aimed at the Netgear WNDR3800, encouraging developers to get involved.. Open Router, Wireless Security, EFF Initiatives, Hacker Collaboration. . LinuxSecurity.com Team

Calendar%202 Jul 22, 2014 User Avatar LinuxSecurity.com Team Server Security
76

Def Con 22 Hackathon: Assessing Wireless Router Security Risks

How secure is your wireless router? The Def Con 22 hacker conference aims to find out exactly how resilient off the shelf products are next month during a six-day hackathon. . Seasoned hackers and security experts are being invited to break a number of wireless routers made by the likes of Linksys, Netgear and D-Link, with the intention of shaming manufacturers into making better kit. The link for this article located at recombu is no longer available. . Cybersecurity experts are encouraged to assess the vulnerabilities of leading Wi-Fi devices at Def Con 22 to identify potential weaknesses.. Router Security, Wireless Hacking, Def Con 22, Security Exploits, Hacker Community. . Dave Wreski

Calendar%202 Jul 21, 2014 User Avatar Dave Wreski Organizations/Events
83

RFID Credit Card Attacks: Insights from Shmoocon Conference

It's been known for some time that there are security issues associated with the increasing use of RFID tags in credit cards, but this past weekend afforded a fresh demonstration of just how easy it is for hackers to take advantage of them. . Onstage at the Shmoocon hacker conference in Washington, D.C., Recursion Ventures security researcher Kristin Paget used about $350 in equipment to wirelessly read a volunteer's RFID-enabled credit card and then encode its key data onto a blank card, as described Monday by Forbes. The link for this article located at Network World is no longer available. . Uncover the alarming simplicity with which cybercriminals can manipulate RFID-enabled payment cards using basic tools, as demonstrated at Shmoocon.. RFID Technology, Credit Card Exploits, Wireless Hacking Techniques. . LinuxSecurity.com Team

Calendar%202 Feb 02, 2012 User Avatar LinuxSecurity.com Team Hacks/Cracks
67

SHA-1 Exploit By Thomas Roth: Cloud Services And Wireless Security

A hacker claims he's used Amazon's cloud services to bust open SHA-1, a wireless network security standard, and he says he'll be demonstrating his process at an upcoming Black Hat get-together. Malicious hackers could quickly set up brute-force attack systems using the cloud, but critics say real-world password cracks might not come so easily.. German hacker Thomas Roth's announcement that he used Amazon.com's (Nasdaq: AMZN) cloud service to crack a wireless network security standard has left some security researchers scratching their heads. Others are merely shaking them in disbelief. That attack was launched against the SHA-1 hash algorithm. Roth's conclusions are that the SHA-1 algorithm is not fit for password hashing, and the compute power offered by cloud services makes it cheap and easy to launch brute-force attacks on passwords. However, it's been known since 2005 that the SHA-1 algorithm has flaws, and the National Institute of Standards and Technology is seeking to replace it. The link for this article located at Tech News World is no longer available. . German hacker Thomas Roth's announcement that he used Amazon.com's (Nasdaq: AMZN) cloud service to c. hacker, claims, amazon's, cloud, services, sha-1, wireless, network, security. . LinuxSecurity.com Team

Calendar%202 Jan 12, 2011 User Avatar LinuxSecurity.com Team Cryptography
74

AWS Wireless Security Risks: Potential Cyber Threats Explored

Amazon. According to the news wire, Roth. Explore the ways in which Amazon's cloud infrastructure might create opportunities for prospective wireless breaches, as indicated by current findings.. Wireless Security,AWS Security Risk,Cloud Computing,Amazon Security. . Anthony Pell

Calendar%202 Jan 10, 2011 User Avatar Anthony Pell Network Security
83

Investigating Rogue Access Points and Config Flaws in Retail Wi-Fi Security

For almost 18 months starting in 2005, attackers used wireless networks at TJX and other retail chains to steal credit card data. The vulnerabilities were not an isolated instance: Subsequent research found that about half of all retail outlets in one shopping center had insecure wireless networks.. Today, WiFi security has improved somewhat, but insecurities in installations still remain far too common. Vulnerability assessments of more than two dozen companies found a quarter have rogue wireless access points that were installed by employees, and a third of their wireless networks had misconfigurations that undermined their security, according to wireless security firm AirTight Networks, which conducted the tests. "A rogue AP is a very serious problem if you have it -- an unmanaged, unknown device that is circumventing your defenses," says David King, CEO of AirTight. "All the layers of defense that you worked so hard to put in can be circumvented by a single device that is communicating in the clear." The link for this article located at Dark Reading is no longer available. . Network protection has advanced, but vulnerabilities remain in setups and settings in commerce and further sectors.. Wireless Security,Rogue Access Point,Network Assessment,Insecure Networks. . LinuxSecurity.com Team

Calendar%202 Aug 19, 2010 User Avatar LinuxSecurity.com Team Hacks/Cracks
74

Emerging DOS Threats: Wireless Networks and Mobile IP Security

Forget spam, viruses, worms, malware and phishing. These threats are apparently old school when compared to a new class of denial-of-service (DOS) attacks that threaten wireless data networks. The latest wireless network threats were outlined in a talk here Thursday by Krishan Sabnani, vice president of networking research at Bell Labs, at the Cyber Infrastructure Protection Conference at City College of New York. . Sabnani said the latest wireless data network threats are the result of inherent weaknesses in Mobile IP, a protocol that uses tunneling and complex network triangulation to allow mobile devices to move freely from one network to another. The link for this article located at Network World is no longer available. . Emerging DOS attacks focus on exploiting weaknesses in Mobile IP, jeopardizing the integrity of wireless communications.. Dos Attack, Wireless Network Threat, Mobile IP Security, Network Defense, Cyber Threats. . Dave Wreski

Calendar%202 Jun 11, 2009 User Avatar Dave Wreski Network Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":2,"type":"x","order":2,"pct":66.67,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":33.33,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200