Implementing Mandatory Access Control with SELinux or AppArmor in Linux
(Oct 25, 2016, 13:00) (0 talkbacks)

 tecmint: In this article we will explain the essentials of SELinux and AppArmor and how to use one of these tools for your benefit depending on your chosen distribution.

Physical RAM attack can root Android and possibly other devices
(Oct 25, 2016, 09:00) (0 talkbacks)

 CSOonline: Not only are Rowhammer attacks possible on ARM, but they're even easier to pull off than on x86.

An introduction to Mozilla's Secure Open Source Fund
(Oct 25, 2016, 07:00) (0 talkbacks)

The SOS Fund is a new effort at Mozilla to support security audits and remediation for open source software projects.

Free tool protects PCs from master boot record attacks
(Oct 22, 2016, 14:00) (1 talkbacks)

Cisco's Talos team has developed an open-source tool that can protect the master boot record of Windows computers from modification by ransomware and other malicious attacks.

How To Patch and Protect Linux Kernel Zero Day Local Privilege Escalation Vulnerability CVE-2016-5195
(Oct 22, 2016, 06:00) (0 talkbacks)

 Nixcraft: A very serious security problem has been found in the Linux kernel.

The Dirty Cow Linux bug: A silly name for a serious problem
(Oct 21, 2016, 13:47) (0 talkbacks)

ZDnet: With attacks in the wild reported, you need to fix this Linux bug as soon as possible.

USB Killers - Hardware and Software options to destroy your data (or devices)
(Oct 20, 2016, 08:00) (0 talkbacks)

 LinuxForum: Every new computer, whether running Linux or not, has some type of Universal Serial Bus (USB) connector.

Critical flaws found in open-source encryption software VeraCrypt
(Oct 19, 2016, 04:00) (1 talkbacks)

Many flaws were located and fixed in VeraCrypt's bootloader for computers and OSes that use the new UEFI (Unified Extensible Firmware Interface) -- the modern BIOS.

Top 5 Penetration Testing Linux Distributions
(Oct 16, 2016, 14:00) (1 talkbacks)

There are a seemingly endless amount of Linux distros for just about every area of use.

Parrot Security 3.2 "CyberSloop" Ethical Hacking OS Is Out with Linux Kernel 4.7
(Oct 15, 2016, 14:00) (0 talkbacks)

Dubbed CyberSloop and based on the Debian GNU/Linux 9 "Stretch (Debian Testing) operating system, Parrot Security 3.2 is now powered by Linux kernel 4.7.5.

vlock - A Smart Way to Lock User Virtual Console or Terminal in Linux
(Oct 15, 2016, 10:00) (0 talkbacks)

 tecmint: vlock is a utility used to lock one or several user virtual console sessions.

Scan Ruby-based apps for security issues with Dawnscanner
(Oct 14, 2016, 11:00) (0 talkbacks)

Dawnscanner is an open source static analysis scanner designed to review the security of web applications written in Ruby.

Apache OpenOffice 4.1.3 Brings Enhancements to the Build Tools, Security Fixes
(Oct 11, 2016, 23:00) (1 talkbacks)

Apache OpenOffice 4.1.3 is now the latest and most advanced build of the powerful office suite

Apache Milagro: A New Security System for the Future of the Web
(Oct 11, 2016, 11:00) (0 talkbacks)

Brian Spector, MIRACL CEO and Co-Founder, described Apache Milagro -- a modern cryptosystem with distributed trust authorities

How 'Security Fatigue' Affects Our Choices Online
(Oct 10, 2016, 14:00) (0 talkbacks)

eWEEK: A new study claims many users suffer from 'security fatigue,' which affects the choices we make online.

How to Check MD5 Sums of Installed Packages in Debian/Ubuntu Linux
(Oct 10, 2016, 07:00) (0 talkbacks)

tecmint: It is a vital step to verify the files on the file system against the information stored in the package.

Google Patches Android for 78 Vulnerabilities in October Update
(Oct 06, 2016, 04:00) (0 talkbacks)

eWEEK: While Google pushes forward with new Pixel hardware, existing devices get another large patch haul.

Keeping Linux containers safe and secure
(Oct 05, 2016, 10:00) (0 talkbacks)

Learn how the Anchore open source tool is making it easier for organizations to know what is going on inside their Linux containers.

5 Tips on Using OAuth 2.0 for Secure Authorization
(Oct 04, 2016, 23:00) (1 talkbacks)

 eSecurityPlanet: OAuth 2.0 can be an effective authorization method.

Linux and Tor are key to ensuring online privacy, security
(Oct 04, 2016, 19:00) (0 talkbacks)

NetworkWorld: Your operating system and how you connect to the internet are key in making your online life private and secure.

Android malware that can infiltrate corporate networks is spreading
(Oct 04, 2016, 13:00) (0 talkbacks)

DressCode, a family of Android malware that has the capability of stealing sensitive files from corporate networks, has been found circulating in at least 3,000 Trojanized apps, security firm Trend Micro said on Friday.

How to Disable root Login Access to PhpMyAdmin
(Oct 04, 2016, 12:00) (0 talkbacks)

If you are planning on using phpmyadmin on a regular basis to manage your databases over the network (or worse, over the Internet!), you don't want to use the root account.

How to Add an Extra Layer of Security on PhpMyAdmin Login Interface
(Oct 03, 2016, 12:00) (0 talkbacks)

 tecmint: PhpMyAdmin was created, is a web based MySQL database manage application, which provides a easy way for Linux newbies to interact with MySQL through a web interface. I

How to Password Protect Web Directories in Nginx
(Oct 02, 2016, 18:00) (0 talkbacks)

In this tutorial, we are going to show you a simple, but effective technique how to password protected web directory when running Nginx as web server.

Security-Oriented Qubes OS 3.2 Improves the Integrated Management Infrastructure
(Oct 02, 2016, 10:00) (0 talkbacks)

 softpedia: The new management functionality implemented in Qubes OS 3.2 can also be used for basic system configuration during installation.

To ensure security and privacy, open source is required
(Oct 01, 2016, 14:00) (0 talkbacks)

NetworkWorld: If my goal is to secure all of my computing devices, I need access to the source code in order to do a complete and effective security appraisal of the software I am running.

Let's Encrypt Wants to Help Improve the CA Model
(Sep 30, 2016, 23:00) (0 talkbacks)

eSecurityPlanet: Josh Aas, executive director of the Internet Security Research Group discusses technologies and approaches that can be used to further improve the Certificate Authority system.

Cybersecurity isn't an IT problem, it's a business problem
(Sep 30, 2016, 15:00) (0 talkbacks)

EnterprisersProject: Collaboration is key when it comes to security in the enterprise.

Nmap 7.30 Security Scanner Adds 12 New IPv6 OS Fingerprints, 7 NSE Scripts
(Sep 30, 2016, 09:00) (0 talkbacks)

Nmap 7.30 is a major release that adds numerous new features and improvements

Addressing the IoT Security Problem
(Sep 30, 2016, 07:00) (0 talkbacks)

Last week's DDOS takedown of security guru Brian Krebs' website made history on several levels.

Meet Apache Spot, a new open source project for cybersecurity
(Sep 29, 2016, 19:00) (0 talkbacks)

Cloudera and Intel on Wednesday announced that they've donated a new open source project to the Apache Software Foundation

25 Useful IPtable Firewall Rules Every Linux Administrator Should Know
(Sep 29, 2016, 04:00) (0 talkbacks)

 tecmint: Iptables uses a set of tables which have chains that contain set of built-in or user defined rules.

Apache Spot Aims to Fetch Open Network Insights
(Sep 28, 2016, 09:41) (0 talkbacks)

eWEEK: The project formerly known as Open Network Insights moves to the Apache Software Foundation and gets a new name—Apache Spot.

The best way to develop software with effective security
(Sep 27, 2016, 09:00) (0 talkbacks) Learn why the best way to get through the security process is to include it early in the product specification, design, and implementation.

5 Ways to Keep Remote SSH Sessions and Processes Running After Disconnection
(Sep 27, 2016, 08:00) (1 talkbacks)

tecmint: SSH or Secure Shell in simple terms is a way by which a person can remotely access another user on other system but only in command line

Sloppy programming leads to OpenSSL woes
(Sep 26, 2016, 23:00) (0 talkbacks)

ZDnet: Sometimes security patches create bigger problems than the ones they solve. OpenSSL just made that blunder.

How to install OpenSC on IPFire Firewall
(Sep 26, 2016, 19:00) (0 talkbacks)

HowToForge: In this tutorial, support for hardware tokens (such as smart cards) and their readers (CCID compliance) are integrated with the IPFire project.

Tor Project Releases Tor (The Onion Router) with Important Bug Fixes
(Sep 26, 2016, 14:00) (0 talkbacks)

Tor is now the latest and most advanced version of the software designed to allow you to connect to the anonymous Tor (The Onion Router) network

