Tux Machines
Posted by Roy Schestowitz on Jun 22, 2023
=> today's howtos | New LWN Articles About Kernel (Linux), Outside Paywall
=> ↺ OSI calls for revision of disclosure rules in CRA
OSI is a co-signatory of an open letter sent this week to the European Parliament by European Digital Rights (EDRi) expressing concern that the Cyber Resilience Act (CRA) draft currently under consideration still includes mandatory requirements for vulnerability disclosure that violate best practices in Open Source software collaborations and are likely to actually undermine the security of digital products and the individuals who use them.
=> ↺ Bitdefender warns of new exfiltration malware targeting remote desktop protocol workloads
Researchers at S.C. Bitdefender SRL today warned of new custom malware actively targeting remote desktop protocol clients to steal data.
=> ↺ Digital Footprints Offer a Window Into Covert Actions
When recent reports emerged of widespread, yearslong cyberattacks by Chinese hackers on Kenya’s government, China was quick to offer a boilerplate denial. But, experts say, in the digital environment, it is harder than ever for attackers to cover their tracks. Writing for Chatham House,
Researchers from AhnLab Security Emergency response Center (ASEC) have uncovered an ongoing hacking campaign, aimed at poorly protected Linux SSH servers, to install the Tsunami DDoS botnet (aka Kaiten). The threat actors behind these attacks were also observed installing other malware families, including ShellBot, XMRig CoinMiner, and Log Cleaner.
=> ↺ Hackers infect Linux SSH servers with Tsunami botnet malware
The attackers scanned the Internet for publicly-exposed Linux SSH servers and then brute-forced username-password pairs to log in to the server.
=> ↺ Compromised Linux SSH servers engage in DDoS attacks, cryptomining
Preventing this type of attack is not difficult: admins should choose strong, unique passwords; enable multi-factor authentication on their SSH account; and set up firewalls to block malicious access attempts and prevent unauthorized entry into the system.
=> ↺ Security updates for Wednesday [LWN.net]
Security updates have been issued by Debian (libfastjson, libx11, opensc, python-mechanize, and wordpress), SUSE (salt and terraform-provider-helm), and Ubuntu (firefox, libx11, pngcheck, python-werkzeug, ruby3.1, and vlc).
The Justice Department today announced the creation of the new National Security Cyber Section – known as NatSec Cyber – within its National Security Division. The newly established litigating section has secured congressional approval and comes in response to the core findings in Deputy Attorney General Lisa O. Monaco’s Comprehensive Cyber Review in July of 2022.
=> ↺ I Was Sentenced to 18 Months in Prison for Hacking Back - My Story
y Journey Through Digital Ethics, Policy, Love and Fear, and Intention, Which Started With a Homeless Lady in San Francisco
To this point in my life, my identity has been linked with the American dream. I was a self-made millionaire at sixteen after starting at an ad technology company in my parents’ basement.
Following high school, I attended Stanford, where I was Chair of Entrepreneurship for the student government, co-founded an entrepreneurship dorm on campus, and was invited as a youth delegate for entrepreneurship at summits around the world like the St. Petersburg Economic Forum.
=> ↺ Vincera Institute Reports Potential Patient Data Breach Due to Ransomware Attack
Vincera Institute, a leading healthcare facility in Philadelphia, PA, is issuing a notice regarding a recent ransomware attack that occurred on April 29, 2023. This attack has the potential to compromise patient data, including personal and medical information.
Upon discovering the incident, Vincera Institute promptly engaged specialized cybersecurity professionals to assist in containing and mitigating the attack. The primary focus has been on securing our systems and safeguarding patient data. While the investigation is still ongoing, we are providing this notice to ensure transparency and offer resources to affected individuals to protect their information.
=> gemini.tuxmachines.org This content has been proxied by September (ba2dc).Proxy Information
text/gemini;lang=en-GB