ICT Security-Sécurité PC et Internet
87.1K views | +0 today
Follow
ICT Security-Sécurité PC et Internet
ICT Security + Privacy + Piracy + Data Protection - Censorship - Des cours et infos gratuites sur la"Sécurité PC et Internet" pour usage non-commercial... (FR, EN+DE)...
Curated by Gust MEES
Your new post is loading...
Your new post is loading...
Scooped by Gust MEES
Scoop.it!

Linux botnets on the rise, says Kaspersky DDoS report | #CyberSecurity #CyberCrime 

Linux botnets on the rise, says Kaspersky DDoS report | #CyberSecurity #CyberCrime  | ICT Security-Sécurité PC et Internet | Scoop.it

The number of distributed denial of service (DDoS) attacks carried out by Linux botnets almost doubled from the first quarter to 70% of the total in the second quarter, a report reveals.

As a result, the proportion of DDoS attacks using the SYN flood DDoS attacks has increased because Linux tools are the most effective tool for this method, according to the latest report by Kaspersky Lab.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=DDos...

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Botnet

 

Gust MEES's insight:

The number of distributed denial of service (DDoS) attacks carried out by Linux botnets almost doubled from the first quarter to 70% of the total in the second quarter, a report reveals.

As a result, the proportion of DDoS attacks using the SYN flood DDoS attacks has increased because Linux tools are the most effective tool for this method, according to the latest report by Kaspersky Lab.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=DDos...

 

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Botnet

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Ubuntu Patches Kernel Vulnerabilities | #Linux #CyberSecurity

Ubuntu Patches Kernel Vulnerabilities | #Linux #CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it
Several vulnerabilities in Ubuntu’s implementation of the Linux kernel, including a use-after-free vulnerability and a timing side-channel vulnerability, were patched today.

An advisory issued by Ubuntu Wednesday morning urges users to patch if they’re running 14.04 LTS or any derivative builds.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

Gust MEES's insight:
Several vulnerabilities in Ubuntu’s implementation of the Linux kernel, including a use-after-free vulnerability and a timing side-channel vulnerability, were patched today.

An advisory issued by Ubuntu Wednesday morning urges users to patch if they’re running 14.04 LTS or any derivative builds.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Auch Linux-Systeme müssen geschützt werden | #CyberSecurity #Protection #AnyOS #AnyDevice

Auch Linux-Systeme müssen geschützt werden | #CyberSecurity #Protection #AnyOS #AnyDevice | ICT Security-Sécurité PC et Internet | Scoop.it
Viele Unternehmen vernachlässigen die Absicherung ihrer Linux-Rechner. Das ist allerdings grob fahrlässig, denn auch Linux ist keineswegs virenfrei.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

Gust MEES's insight:
Viele Unternehmen vernachlässigen die Absicherung ihrer Linux-Rechner. Das ist allerdings grob fahrlässig, denn auch Linux ist keineswegs virenfrei.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Linux Mint: Forenkonten gekapert, Teile der Webseite offline | CyberSecurity

Linux Mint: Forenkonten gekapert, Teile der Webseite offline | CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it
Neben den ISO-Images der Distribution wurden bei Linux Mint auch 71.000 Foren-Accounts kompromittiert. Die dazugehörigen Passwort-Hashes halten einem gezielten Angriff wahrscheinlich nicht stand.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux+Mint


Gust MEES's insight:
Neben den ISO-Images der Distribution wurden bei Linux Mint auch 71.000 Foren-Accounts kompromittiert. Die dazugehörigen Passwort-Hashes halten einem gezielten Angriff wahrscheinlich nicht stand.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux+Mint


No comment yet.
Scooped by Gust MEES
Scoop.it!

Linux Mint hacked: malware-infected ISOs linked from official site | CyberSecurity | Nobody Is Perfect

Linux Mint hacked: malware-infected ISOs linked from official site | CyberSecurity | Nobody Is Perfect | ICT Security-Sécurité PC et Internet | Scoop.it
Downloaded Linux Mint on February 20th? Check for infection NOW




Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux+Mint


Gust MEES's insight:
Downloaded Linux Mint on February 20th? Check for infection NOW


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux+Mint


No comment yet.
Scooped by Gust MEES
Scoop.it!

Years-old critical GNU C Library vulnerability patched by open source providers | Linux | CyberSecurity

Years-old critical GNU C Library vulnerability patched by open source providers | Linux | CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it
Ubuntu, Red Hat, and a number of other leading open source solutions providers have patched a critical vulnerability in the GNU C Library that has been around for years.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:
Ubuntu, Red Hat, and a number of other leading open source solutions providers have patched a critical vulnerability in the GNU C Library that has been around for years.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

Patch Linux now, Google, Red Hat warn, over critical glibc bug | CyberSecurity | Updates

Patch Linux now, Google, Red Hat warn, over critical glibc bug | CyberSecurity | Updates | ICT Security-Sécurité PC et Internet | Scoop.it
Google has disclosed details of an open-source bug in the GNU C Library affecting a large number of Linux distributions, software and devices.




Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:
Google has disclosed details of an open-source bug in the GNU C Library affecting a large number of Linux distributions, software and devices.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

Les botnets Linux derrière 45 % des DDoS

Les botnets Linux derrière 45 % des DDoS | ICT Security-Sécurité PC et Internet | Scoop.it
Les botnets Linux sont largement impliqués dans les dernières attaques par déni de service distribué menées à travers le monde.





Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Passwords


http://www.scoop.it/t/securite-pc-et-internet/?tag=DDos


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:

Les botnets Linux sont largement impliqués dans les dernières attaques par déni de service distribué menées à travers le monde.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Passwords


http://www.scoop.it/t/securite-pc-et-internet/?tag=DDos


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux



No comment yet.
Scooped by Gust MEES
Scoop.it!

Trojan for Linux takes screenshots | Linux.Ekoms.1

Trojan for Linux takes screenshots |  Linux.Ekoms.1 | ICT Security-Sécurité PC et Internet | Scoop.it
Malware for Linux becomes more and more diverse. Among them are spyware programs, ransomware, and Trojans designed to carry out DDoS attacks. Doctor Web security researchers examined yet another cybercriminals’ creation dubbed Linux.Ekoms.1. This Trojan can periodically take screenshots and download different files to a compromised machine.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:
Malware for Linux becomes more and more diverse. Among them are spyware programs, ransomware, and Trojans designed to carry out DDoS attacks. Doctor Web security researchers examined yet another cybercriminals’ creation dubbed Linux.Ekoms.1. This Trojan can periodically take screenshots and download different files to a compromised machine.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

Hacking is way easier than it should be with this newly discovered Linux bug | CyberSecurity

Hacking is way easier than it should be with this newly discovered Linux bug | CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it

Security researchers have discovered a bug in several Linux distros that makes taking over an entire system as easy as striking the backspace key 28 times.




Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:

Security researchers have discovered a bug in several Linux distros that makes taking over an entire system as easy as striking the backspace key 28 times.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

Linux web servers targeted in new ransomware scam | CyberSecurity | CryptoWare | Malware

Linux web servers targeted in new ransomware scam | CyberSecurity | CryptoWare | Malware | ICT Security-Sécurité PC et Internet | Scoop.it
A new ransomware campaign dubbed Linux.Encoder.1 is targeting web servers using the Linux operating system and is demanding a payment of one bitcoin, or $380, from its victims for the release of the captured files.

Researchers at the anti-virus firm Dr. Web said the cybercriminals appear to target network administrator computers because these hold the web server software that they are interested in controlling. It was also noted that in some cases the attackers used the CMS Magneto vulnerability to attack the web servers.

The Dr. Web staff did not have a firm idea how prevalent these attacks have been, but they “presume that at least tens of users have already fallen victim to this trojan.” An email by SCMagazine.com to Dr. Web to confirm the number of infected systems has not yet been returned.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=RANSOMWARE


Gust MEES's insight:
A new ransomware campaign dubbed Linux.Encoder.1 is targeting web servers using the Linux operating system and is demanding a payment of one bitcoin, or $380, from its victims for the release of the captured files.

Researchers at the anti-virus firm Dr. Web said the cybercriminals appear to target network administrator computers because these hold the web server software that they are interested in controlling. It was also noted that in some cases the attackers used the CMS Magneto vulnerability to attack the web servers.

The Dr. Web staff did not have a firm idea how prevalent these attacks have been, but they “presume that at least tens of users have already fallen victim to this trojan.” An email by SCMagazine.com to Dr. Web to confirm the number of infected systems has not yet been returned.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=RANSOMWARE


No comment yet.
Scooped by Gust MEES
Scoop.it!

Encryption ransomware threatens Linux users | CyberSecurity | Malware | CryptoWare

Encryption ransomware threatens Linux users | CyberSecurity | Malware | CryptoWare | ICT Security-Sécurité PC et Internet | Scoop.it
Doctor Web warns users about new encryption ransomware targeting Linux operating systems. Judging from the directories in which the Trojan encrypts files, one can draw a conclusion that the main target of cybercriminals is website administrators whose machines have web servers deployed on. Doctor Web security researchers presume that at least tens of users have already fallen victim to this Trojan.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=RANSOMWARE


Gust MEES's insight:
Doctor Web warns users about new encryption ransomware targeting Linux operating systems. Judging from the directories in which the Trojan encrypts files, one can draw a conclusion that the main target of cybercriminals is website administrators whose machines have web servers deployed on. Doctor Web security researchers presume that at least tens of users have already fallen victim to this Trojan.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=RANSOMWARE

No comment yet.
Scooped by Gust MEES
Scoop.it!

CCTV cameras worldwide used in DDoS attacks | CyberSecurity | Passwords

CCTV cameras worldwide used in DDoS attacks | CyberSecurity | Passwords | ICT Security-Sécurité PC et Internet | Scoop.it


Over 900 CCTV cameras have been enlisted as slaves in a botnet thanks to default credentials.






Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Passwords


http://www.scoop.it/t/securite-pc-et-internet/?tag=DDos


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux



Gust MEES's insight:
Over 900 CCTV cameras have been enlisted as slaves in a botnet thanks to default credentials.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Passwords


http://www.scoop.it/t/securite-pc-et-internet/?tag=DDos


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux



No comment yet.
Scooped by Gust MEES
Scoop.it!

Ubuntu Forums hack exposes two million users | #CyberSecurity #CyberCrime #Linux #NobodyIsPerfect #Awareness

Ubuntu Forums hack exposes two million users | #CyberSecurity #CyberCrime #Linux #NobodyIsPerfect #Awareness | ICT Security-Sécurité PC et Internet | Scoop.it

The company that builds Ubuntu, a popular Linux distribution, has said that its forums were hacked on Thursday.

Canonical, which develops the operating system, said in a statement on Friday that two million usernames, email addresses, IP addresses associated with the Ubuntu Forums were taken by an unnamed attacker.

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

 

Gust MEES's insight:

The company that builds Ubuntu, a popular Linux distribution, has said that its forums were hacked on Thursday.

Canonical, which develops the operating system, said in a statement on Friday that two million usernames, email addresses, IP addresses associated with the Ubuntu Forums were taken by an unnamed attacker.

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

New Remaiten Malware Builds Botnet of Linux-Based Routers | #CyberSecurity #InternetOfThings #IoT

New Remaiten Malware Builds Botnet of Linux-Based Routers | #CyberSecurity #InternetOfThings #IoT | ICT Security-Sécurité PC et Internet | Scoop.it
Remaiten Linux Bot Targets Routers and Potentially Other Embedded (IoT) Devices

A new piece of malware is targeting embedded systems with the mission to compromise and make them part of a botnet, ESET security researchers have discovered.

Dubbed “Remaiten” (Linux/ Remaiten), the new threat combines the capabilities of previously spotted Tsunami (also known as Kaiten) and Gafgyt malware and also brings a series of improvements and new features. According to ESET, three versions of Remaiten have already emerged, while the malware authors call their creation “KTN-Remastered” or “KTN-RM.”

One of the capabilities that Remaiten borrows from Gafgyt is telnet scanning, though Remaiten enjoys a series of improvements, ESET’s Michal Malik explains in a blog post. Both, however, rely on improperly secured devices to successfully infect them.

Gafgyt attempts to connect to random routers via port 23, which it then issues a shell command to download bot executables for multiple architectures and tries to run them. Remaiten, on the other hand, carries downloaders for CPU architectures commonly used in embedded Linux devices, then tries to trigger the device’s platform to drop only the appropriate downloader.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Internet+of+things

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Router

 

Gust MEES's insight:
Remaiten Linux Bot Targets Routers and Potentially Other Embedded (IoT) Devices

A new piece of malware is targeting embedded systems with the mission to compromise and make them part of a botnet, ESET security researchers have discovered.

Dubbed “Remaiten” (Linux/ Remaiten), the new threat combines the capabilities of previously spotted Tsunami (also known as Kaiten) and Gafgyt malware and also brings a series of improvements and new features. According to ESET, three versions of Remaiten have already emerged, while the malware authors call their creation “KTN-Remastered” or “KTN-RM.”

One of the capabilities that Remaiten borrows from Gafgyt is telnet scanning, though Remaiten enjoys a series of improvements, ESET’s Michal Malik explains in a blog post. Both, however, rely on improperly secured devices to successfully infect them.

Gafgyt attempts to connect to random routers via port 23, which it then issues a shell command to download bot executables for multiple architectures and tries to run them. Remaiten, on the other hand, carries downloaders for CPU architectures commonly used in embedded Linux devices, then tries to trigger the device’s platform to drop only the appropriate downloader.

 

Learn more / En savoir plus / Mehr erfahren:

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Internet+of+things

 

http://www.scoop.it/t/securite-pc-et-internet/?tag=Router

 

 

No comment yet.
Scooped by Gust MEES
Scoop.it!

Google, Red Hat discover critical DNS security flaw that enables malware to infect entire internet | CyberSecurity | #GlibC

Google, Red Hat discover critical DNS security flaw that enables malware to infect entire internet | CyberSecurity | #GlibC | ICT Security-Sécurité PC et Internet | Scoop.it
Google and enterprise software firm Red Hat have discovered a critical security flaw affecting the Internet's Domain Name System (DNS), found in a universally used protocol. This means an attacker could use it to infect almost everything on the entire internet. With the flawed code spread far and wide, it will likely take years of effort to patch the bug.

Google and Red Hat engineers both independently discovered the DNS bug within the GNU C standard library (glibc), which has been assigned CVE-2015-7547, and then worked together to create a patch. The security vulnerability works by tricking browsers into looking up suspicious domains, which causes servers to reply with DNS names that are far too long, thus causing a buffer overflow in the victim's software.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:
Google and enterprise software firm Red Hat have discovered a critical security flaw affecting the Internet's Domain Name System (DNS), found in a universally used protocol. This means an attacker could use it to infect almost everything on the entire internet. With the flawed code spread far and wide, it will likely take years of effort to patch the bug.

Google and Red Hat engineers both independently discovered the DNS bug within the GNU C standard library (glibc), which has been assigned CVE-2015-7547, and then worked together to create a patch. The security vulnerability works by tricking browsers into looking up suspicious domains, which causes servers to reply with DNS names that are far too long, thus causing a buffer overflow in the victim's software.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

Hackers attacked Linux distribution network in a way the FBI can only dream of | CyberSecurity

Hackers attacked Linux distribution network in a way the FBI can only dream of | CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it
If you downloaded a new build from the website over the weekend, you'll probably need to start over.


Hackers took control of the official website for the Linux Mint distro over the weekend, resulting in some users downloading a build of the OS that had been modified to include a backdoor that would give attackers full access to a user’s system.

Announced in a blog post, the organization said it quickly spotted and rectified the issue, but that anyone who downloaded Linux Mint (Cinnamon Edition) on February 20 should probably start over. At the very least, you’ll want to check the MD5 signature of your download to ensure it’s legit.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux+Mint


Gust MEES's insight:
If you downloaded a new build from the website over the weekend, you'll probably need to start over.


Hackers took control of the official website for the Linux Mint distro over the weekend, resulting in some users downloading a build of the OS that had been modified to include a backdoor that would give attackers full access to a user’s system.

Announced in a blog post, the organization said it quickly spotted and rectified the issue, but that anyone who downloaded Linux Mint (Cinnamon Edition) on February 20 should probably start over. At the very least, you’ll want to check the MD5 signature of your download to ensure it’s legit.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux+Mint


No comment yet.
Scooped by Gust MEES
Scoop.it!

Schädling in Linux Mint nach Hack der Website | CyberSecurity

Schädling in Linux Mint nach Hack der Website | CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it
Der Server des Linux-Projekts Mint hat nach einem Hack eine Linux-Version mit Schädling verteilt, der Passwörter abgreift. Betroffen sind vermutlich nur die am 20. Februar heruntergeladenen Cinnamon-Edition von Linux Mint 17.3.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux+Mint


Gust MEES's insight:
Der Server des Linux-Projekts Mint hat nach einem Hack eine Linux-Version mit Schädling verteilt, der Passwörter abgreift. Betroffen sind vermutlich nur die am 20. Februar heruntergeladenen Cinnamon-Edition von Linux Mint 17.3.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux+Mint



No comment yet.
Scooped by Gust MEES
Scoop.it!

Linux distros aren't updating WebKit, making web browsers and email clients vulnerable | CyberSecurity

Linux distros aren't updating WebKit, making web browsers and email clients vulnerable | CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it
The WebKit rendering engine used in many Linux applications is a complete security mess. That’s the takeaway from a blog post by Michael Catanzaro, who works on GNOME’s WebKitGTK+ project. He’s sounding the alarm about a problem the open-source community needs to fix.

The problem with WebKit
Most web browsers issue regular security updates to their users. But, if you’re using a WebKit-based browser, or email client, or any other application that uses that rendering engine, on Linux, you almost certainly aren’t getting security updates.

WebKit is a large open-source project. Apple uses WebKit for Safari on Mac and iOS, and those versions of WebKit receive regular security updates. But the WebKit port used for Linux does not.

The common port used by Linux distros is WebKitGTK+, which is associated with GNOME software and other applications that use the GTK+ toolkit. This includes Epiphany, GNOME’s flagship web browser, often called simply “Web” or “GNOME Web.” It also includes a variety of other applications, such as the Evolution email client, Midori web browser, GIMP image-editing program, Banshee and Rhythmbox media players, and many other programs.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:
The WebKit rendering engine used in many Linux applications is a complete security mess. That’s the takeaway from a blog post by Michael Catanzaro, who works on GNOME’s WebKitGTK+ project. He’s sounding the alarm about a problem the open-source community needs to fix.

The problem with WebKit
Most web browsers issue regular security updates to their users. But, if you’re using a WebKit-based browser, or email client, or any other application that uses that rendering engine, on Linux, you almost certainly aren’t getting security updates.

WebKit is a large open-source project. Apple uses WebKit for Safari on Mac and iOS, and those versions of WebKit receive regular security updates. But the WebKit port used for Linux does not.

The common port used by Linux distros is WebKitGTK+, which is associated with GNOME software and other applications that use the GTK+ toolkit. This includes Epiphany, GNOME’s flagship web browser, often called simply “Web” or “GNOME Web.” It also includes a variety of other applications, such as the Evolution email client, Midori web browser, GIMP image-editing program, Banshee and Rhythmbox media players, and many other programs.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

ALERT!!! Glibc: Sicherheitslücke gefährdet fast alle Linux-Systeme - #Update asap!!!

ALERT!!! Glibc: Sicherheitslücke gefährdet fast alle Linux-Systeme - #Update asap!!! | ICT Security-Sécurité PC et Internet | Scoop.it
Sicherheitslücke gefährdet fast alle Linux-Systeme
Eine schwerwiegende Sicherheitslücke klafft in der Glibc-Bibliothek, die in fast allen Linux-Systemen genutzt wird: Eine DNS-Funktion erlaubt die Ausführung von bösartigem Code. Nutzer sollten schnellstmöglich Updates installieren.
Diese Sicherheitslücke hat es in sich: Mittels gezielter DNS-Antworten lässt sich unter Umständen die Namensauflösungsfunktion der Glibc-Bibliothek dazu bringen, fremden Code auszuführen. Die Glibc ist die Standard-C-Bibliothek, die üblicherweise auf Linux-Systemen zum Einsatz kommt.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux



Gust MEES's insight:
Sicherheitslücke gefährdet fast alle Linux-Systeme
Eine schwerwiegende Sicherheitslücke klafft in der Glibc-Bibliothek, die in fast allen Linux-Systemen genutzt wird: Eine DNS-Funktion erlaubt die Ausführung von bösartigem Code. Nutzer sollten schnellstmöglich Updates installieren.
Diese Sicherheitslücke hat es in sich: Mittels gezielter DNS-Antworten lässt sich unter Umständen die Namensauflösungsfunktion der Glibc-Bibliothek dazu bringen, fremden Code auszuführen. Die Glibc ist die Standard-C-Bibliothek, die üblicherweise auf Linux-Systemen zum Einsatz kommt.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

Root-Exploit: Android und Linux anfällig für Rechte-Trickserei | CyberSecurity

Root-Exploit: Android und Linux anfällig für Rechte-Trickserei | CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it
Der Schlüsselbund des Kernels stattet mit einem Trick seit 2012 jeden Nutzer mit Root-Rechten aus. Allerdings muss der Nutzer dafür bereits angemeldet sein.




Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:
Der Schlüsselbund des Kernels stattet mit einem Trick seit 2012 jeden Nutzer mit Root-Rechten aus. Allerdings muss der Nutzer dafür bereits angemeldet sein.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

Gefährliche Linux-Lücke betrifft Millionen Geräte | CyberSecurity

Gefährliche Linux-Lücke betrifft Millionen Geräte | CyberSecurity | ICT Security-Sécurité PC et Internet | Scoop.it
Im Linux-Kernel ist eine gefährliche Lücke entdeckt worden, die seit drei Jahren existiert. Nicht nur Linux-PCs sind betroffen.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:
Im Linux-Kernel ist eine gefährliche Lücke entdeckt worden, die seit drei Jahren existiert. Nicht nur Linux-PCs sind betroffen.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


No comment yet.
Scooped by Gust MEES
Scoop.it!

Website files encrypted by Linux.Encoder.1 ransomware? There is now a free fix | CyberSecurity

Researchers have exploited a flaw in the encryption procedure used by the Linux.Encoder.1 - the first ransomware targeting the Linux platform - to develop a decryption tool for victims.


On Thursday, Russian anti-virus company Dr. Web first disclosed the existence of Linux.Encoder.1, a strain of ransomware similar to other notorious ransomware families such as CryptoWall and TorLocker, but targeting computers running Linux rather than Windows.

Evidence of infections by Linux.Encoder.1 are scattered across the net, because many websites appear to be revealing their impacted state in search engine results.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=RANSOMWARE


Gust MEES's insight:
Researchers have exploited a flaw in the encryption procedure used by the Linux.Encoder.1 - the first ransomware targeting the Linux platform - to develop a decryption tool for victims.


On Thursday, Russian anti-virus company Dr. Web first disclosed the existence of Linux.Encoder.1, a strain of ransomware similar to other notorious ransomware families such as CryptoWall and TorLocker, but targeting computers running Linux rather than Windows.

Evidence of infections by Linux.Encoder.1 are scattered across the net, because many websites appear to be revealing their impacted state in search engine results.


Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=RANSOMWARE


No comment yet.
Scooped by Gust MEES
Scoop.it!

Linux Ransomware Is Now Attacking Webmasters | CyberSecurity | Malware | CryptoWare

Linux Ransomware Is Now Attacking Webmasters | CyberSecurity | Malware | CryptoWare | ICT Security-Sécurité PC et Internet | Scoop.it
A new bit of ransomware is now attacking Linux-based machines, specifically the folders associated with serving web pages. Called Linux.Encoder.1 the..


  

Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=RANSOMWARE


Gust MEES's insight:
A new bit of ransomware is now attacking Linux-based machines, specifically the folders associated with serving web pages. Called Linux.Encoder.1 the..


  

Learn more:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


http://www.scoop.it/t/securite-pc-et-internet/?tag=RANSOMWARE


No comment yet.
Scooped by Gust MEES
Scoop.it!

Security: Ein Botnetz aus Überwachungskameras | Linux

Security: Ein Botnetz aus Überwachungskameras | Linux | ICT Security-Sécurité PC et Internet | Scoop.it

Überwachungskameras schränken nicht nur die Privatsphäre vorbeilaufender Menschen ein - sie können auch als Basis für DDoS-Angriffe missbraucht werden. Dazu nutzen Kriminelle in einem aktuellen...


Kameras mit Linux-Distribution

Alle infizierten Geräte liefen nach Angaben der Forscher mit einem Embedded-Linux und nutzten die Busybox-Tools. Die installierte Malware wird als eine Variante von ELF_BASHLITE beschrieben. Ist die Software installiert, scannt diese im Netzwerk nach anderen Geräten mit Busybox und sucht nach offenen Telnet/SSH-Diensten. In einer bestimmten Variante der Malware fanden die Forscher den Code, um die DDoS-Angriffe durchzuführen.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Passwords


http://www.scoop.it/t/securite-pc-et-internet/?tag=DDos


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux


Gust MEES's insight:

Überwachungskameras schränken nicht nur die Privatsphäre vorbeilaufender Menschen ein - sie können auch als Basis für DDoS-Angriffe missbraucht werden. Dazu nutzen Kriminelle in einem aktuellen...


Kameras mit Linux-Distribution

Alle infizierten Geräte liefen nach Angaben der Forscher mit einem Embedded-Linux und nutzten die Busybox-Tools. Die installierte Malware wird als eine Variante von ELF_BASHLITE beschrieben. Ist die Software installiert, scannt diese im Netzwerk nach anderen Geräten mit Busybox und sucht nach offenen Telnet/SSH-Diensten. In einer bestimmten Variante der Malware fanden die Forscher den Code, um die DDoS-Angriffe durchzuführen.


Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Passwords


http://www.scoop.it/t/securite-pc-et-internet/?tag=DDos


http://www.scoop.it/t/securite-pc-et-internet/?tag=Linux

No comment yet.