Se afișează postările cu eticheta GNU. Afișați toate postările
Se afișează postările cu eticheta GNU. Afișați toate postările

joi, 29 ianuarie 2015

Ghostbusting in the 'critically' vulnerable Linux machine



Whose afraid of GHOSTs? Disagreement over potential risks of new Linux vulnerability, but layered defence is recommended.

Security vendor Qualys has exposed and defined a new critical Linux vulnerability in the Linux GNU C Library (versions 2.2 and newer) that is capable of instigating remote code execution in some cases. The threat could lead to malicious control over user devices and system installations that date back to year 2000.

Known formally as CVE-2015-0235, the threat is more jauntily named GHOST because it can be triggered by the "_gethostbyname" function, a networked computing control used by a vast number of machines.






Qualys CTO Wolfgang Kandek has said that the flaw could allow attackers to gain remote control of a system without having any prior knowledge of system credentials. An attacker could send a simple email on a Linux-based system to trigger a buffer overflow and automatically get complete access to that machine.
Danger disclosure dilemma

Szilard Stange, director at software management toolkit and malware scanning company Opswat, asserts that vulnerabilities like this bring into question exactly how we as an industry handle the wider disclosure process. This is because, according to Opswat investigation, many distributions were not affected by this vulnerability like the latest long-term-support release of Ubuntu.

“Many distributions [had] released an update to the vulnerable software about a week before the publication date and many others have released updates on the same day, like Red Hat and Debian. All the updates were released as a result of the coordination of the disclosure process. We can say that all major Linux distributions had the fix released on the same day of security advisory release,” Strange told SCMagazineUK.com.

Read more :
http://www.scmagazineuk.com/ghostbusting-in-the-critically-vulnerable-linux-machine/article/395105/

miercuri, 28 ianuarie 2015

Open Source Alternative Browsers for Linux Users

Web browsers are the way we interact with the web servers and get connected to the internet. Some of the most renowned web browsers are internet explorer, chrome, Firefox and opera, which are dominating the market for desktop web browsers and getting tons of likes of the people all around the world. But, There are many other alternative browsers who provide a lot of unique features and functionality. It’s always good to experiment with some other alternative browsers to compare the features and it can be used for different purposes like business, Social interaction and entertainment.

If you are using Linux as your operating system, then which web browser is your first choice? Well, I don’t want to guess this question when being an open source a lot of alternatives are available. So, Why not to try out some cool open source alternative browsers and feel the difference in your own. Let’s just check some cool open source alternative browsers for Linux operating system and see which one suits according to your requirement.

Browsers:

Fifth:
http://fifth-browser.sourceforge.net/

Dooscape:
http://doocode.esy.es/prod/dooscape.php

GNU Emacs:
http://www.gnu.org/software/emacs/

Breach:
http://breach.cc/

QupZilla:
http://www.qupzilla.com/download

Source:
http://thegeekdesire.com/open-source-alternative-browsers-for-linux-users.html

Postări populare