Linux Network Security

Discover Network Security News

Updated CERT Advisory on Kerberos Vulnerabilities

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The Computer Emergency Response Team has updated their advisory on the recent Kerberos buffer overflow vulnerabilities. Most vendors have updated their packages already to fix this vulnerability. "The most severe vulnerability allows remote intruders to gain root privileges . . .

Kerberos In The Legal Limelight

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This article discusses the recent turmoil over the Slashdot postings regarding Kerberos, and the modifications that Microsoft has made to the Kerberos security protocol. "On Thursday, lawyers for Andover.Net, the parent company of the Linux enthusiast site Slashdot, posted . . .

Ex-CIA Chief: Beware Spy-Viruses

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Former CIA director R. James Woolsey, speaking on a panel here Wednesday, warned that international spies and terrorists would soon wield a more purposeful and dangerous breed of computer virus than ever seen before. Unlike Melissa, CIH or the recent . . .

Information on Slashdot DDoS

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

During Thursday and Saturday of last week, the slashdot.org site experienced a Distributed Denial of Service attack. The follow article recounts what happened. "What follows is more-or-less Pat "BSD-Pat" Lynch's account of the DDoS... Pat is our super 31337 . . .

Security Scanners for Linux

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This paper discusses the differnt types of security scanners available for Linux. "A scanner is a program that automatically detects security weaknesses in a remote or localhost.". Scanners are important to Internet security because they reveal weaknesses in the . . .

New DDoS tools developed

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

More information on the "mstream" DDoS attack tool. "A new distributed denial-of-service (DDoS) tool found recently in computers at several universities may be able to avoid defenses put up by Web sites after a rash of DDoS attacks in February . . .

Slashdot gets trashed

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Although some readers credited the shutdown to an ironic reverse "slashdot effect" caused by the crush of a linking news article, Wired News reporter Declan McCullagh quoted sources at the website blaming a distributed denial of service attack for the . . .

Call it Slash-and-Burn.org

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Slashdot has fallen victim of a distributed denial of service attack. "Thursday just wasn't a good day for geek-culture destination Slashdot. First came the news that Microsoft ordered Slashdot to delete discussions of one of the company's security products. . . .

Mazu Networks Aims To Stop Hackers’ Net Attacks

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Mazu Networks, a start-up that was a runner-up in the prestigious Massachusetts Institute of Technology entrepreneurship competition, aims to put an end to the hacker attacks that resulted in highly publicized outages earlier this year for Internet high-flyers Yahoo Inc. . . .

Stoic Distro for the Paranoid

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

"Finally, a Linux distribution geared at easing the security-conscious minds of such self-professed paranoiacs as G. Gordon Liddy has hit the streets. Nexus developers are taking names, ranks and numbers. According to its makers, Nexus is a free, . . .

Creating Warning Login Banners

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Here is a good source for help in developing a Warning banner. "A requirement for successfully prosecuting those unauthorized users who improperly use a government computer is that the computer must have a warning banner displayed at all access . . .

Apache.org owned by white hats

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Friendly strangers briefly took over the Apache Software Foundation server by exploiting a series of common configuration errors, and then announced their presence by inserting an advertisement for Microsoft at the bottom of the home page. The open-source Apache is . . .

There but for the Grace of Bill....

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Here's an analysis of the recent Microsoft worm, and an interesting commentary on it's effect on Linux users. "Guess what? No matter what you've heard about Microsoft Outlook, the situation is basically the same as it is in Linux. . . .

Big Brother Vulnerability

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Notice - an exploitable buffer overflow has been reported in the Big Brother server (bbd). If you're running BB, please either update your version, apply the fix enclosed, and run BB as a non-root user! If you have . . .

Sendmail protection for ILOVEYOU worm

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Included here is information that can be added to your sendmail configuration to protect your internal users from the ILOVEYOU worm from spreading, as well as more information from this bugtraq post. Be sure to note that variations . . .

Hackers release new DoS tool

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The denial of service attacks that took down Yahoo, eBay, and other major Web sites has apparently inspired computer vandals to construct more attack tools. There’s a new tool called “mstream,

Linux Security: TCP-Wrappers?

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Linux, like any operating system, is only as secure as you make it. Any computer that is connected to a network, and especially the Internet, is susceptible to being compromised. Security is an issue that affects everyone from home users . . .

Detecting and Decoding MStream Traffic

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Elliot Turner speaks about the recent "MStream" DDoS attack, and attack signatures he's explored to detect the presence of the vulnerability. "Using the attack signature modules and SNP-L scripts included in this write-up, one can detect and decode "mstream" network . . .