Thank you for reading the LinuxSecurity.com weekly security newsletter. The purpose of this document is to provide our readers with a quick summary of each week's most relevant Linux security headlines.

LinuxSecurity.com Feature Extras:

Linux and Open Source FAQs: Common Myths and Misconceptions Addressed - LinuxSecurity debunks some common myths and misconceptions regarding open source and Linux by answering a few Linux-related frequently asked questions.

New & Improved LinuxSecurity Site Coming Soon! - After many months of development by a dedicated team of programmers and beta testers, the new LinuxSecurity is almost ready! With an all new look & feel, organizational changes, security events, and additions to our staff, we hope to better serve the Linux and open source community. Although there are many aesthetic improvements, a major part of our development has focused on creating a content structure and backend system that is easy to update.


  New TLS encryption-busting attack also impacts the newer TLS 1.3 (Feb 11)
 

A team of academics has revealed a new cryptographic attack this week that can break encrypted TLS traffic, allowing attackers to intercept and steal data previously considered safe & secure.

  Hackers wipe US servers of email provider VFEmail (Feb 12)
 

Hackers have breached the severs of email provider VFEmail.net and wiped the data from all its US servers, destroying all US customers' data in the process.

  Millions Affected by 500px Data Breach (Feb 13)
 

Online photography network 500px has forced a password reset for all users after revealing this week that it suffered a data breach last summer.

  China's cybersecurity law update lets state agencies 'pen-test' local companies (Feb 11)
 

New provisions made to China's Cybersecurity Law last November gives state agencies the legal authority to remotely conduct penetration testing on any internet-related business operating in China, and even copy and later share any data government officials find on inspected systems.

  OkCupid Denies Data Breach Amid Account Hack Complaints (Feb 12)
 

Dating is tough as it is, but some OkCupid users are reporting a new kind of challenge: Hackers are breaking into accounts, changing their email addresses and passwords, and locking them out. However, the dating website states it has not been affected by a security breach.

  ClassPass, Gfycat, StreetEasy hit in latest round of mass site hacks (Feb 17)
 

In just a week, a single seller put close to 750 million records from 24 hacked sites up for sale. Now, the hacker has struck again.

  White-Hat Bug Bounty Programs Draw Inspiration from the Old West (Feb 18)
 

Back in the Old West, sheriffs tacked up parchment "Wanted" posters offering cash bounties to help them catch lawless gunslingers like Billy the Kid and Butch Cassidy. Today, corporations and governments are paying high-dollar bounties to combat a new generation of Billy the Bots and Breach Cassidys on a far more expansive frontier -- cyberspace.