Blog posts tagged
"Security"

196 posts


Sarah Dickinson
24 October 2019

FinTechs discuss security, regulation and innovation at New York City roundtable

Article Cloud and server

Earlier this month, Canonical, IBM and FinTech specialists Medici held a joint roundtable in New York for executives within the financial services sector to hear and discuss their pain points, the most prominent emerging technologies and what the future holds. Entitled ‘Graduating from FinTech to FinServ’, the...

Sarah Dickinson
24 October 2019


Lech Sandecki
22 October 2019

How Ubuntu Advantage for Infrastructure delivers top-notch Linux security

Article Ubuntu

Linux security is central to each release of Ubuntu, the most widely-used Linux distribution. With Ubuntu’s predictable six-month release cycle, users know when to expect the latest upstream open source capabilities and security. Long Term Support (LTS) vs Interim releases Every two years in April, a Long Term Support...

Lech Sandecki
22 October 2019


Igor Ljubuncic
22 August 2019

Useful security software from the Snap Store

Article Desktop

Overall, most Linux distributions offer sane, reasonable defaults that balance security and functionality quite well. However, most of the security mechanisms are transparent, running in the background, and you still might require some additional, practical software to bolster your security array. Back in July, we...

Igor Ljubuncic
22 August 2019


Canonical
9 August 2019

Enhanced Livepatch desktop integration available with Ubuntu 18.04.3 LTS

Article Desktop

Ubuntu 18.04.3 LTS has just been released. For the Desktop, newer stable versions of GNOME components have been included, as well as a new feature – Livepatch desktop integration. As usual with LTS point releases, the main changes are a refreshed hardware enablement stack (newer versions of the kernel, xorg & drivers)...

Canonical
9 August 2019


Canonical
5 August 2019

Charmed Kubernetes update for upstream API server vulnerability

Article Cloud and server

An upstream Kubernetes vulnerability (CVE-2019-11247) has been identified where the API server mistakenly allows access to a cluster-scoped custom resource, if the request is made as if the resource were namespaced. Authorisations for the resource accessed in this manner are enforced using roles and role bindings within...

Canonical
5 August 2019


Canonical
5 July 2019

Ubuntu updates for TCP SACK Panic vulnerabilities

Article Cloud and server

Issues have been identified in the way the Linux kernel’s TCP implementation processes Selective Acknowledgement (SACK) options and handles low Maximum Segment Size (MSS) values. These TCP SACK Panic vulnerabilities could expose servers to a denial of service attack, so it is crucial to have systems patched. Updated...

Canonical
5 July 2019


Alex Murray
28 May 2019

Introducing the Ubuntu security podcast

Article People and culture

The Ubuntu Security Podcast is a weekly podcast covering all the latest news and developments from the Ubuntu Security team. Each week the team discuss the various security updates that have been published across the Ubuntu releases, describing the technical details of both the security vulnerabilities as well as the...

Alex Murray
28 May 2019


Alex Murray
14 May 2019

Ubuntu updates to mitigate new Microarchitectural Data Sampling (MDS) vulnerabilities

Article Cloud and server

Microarchitectural Data Sampling (MDS) describes a group of vulnerabilities (CVE-2018-12126, CVE-2018-12127, CVE-2018-12130, and CVE-2019-11091) in various Intel microprocessors, which allow a malicious process to read various information from another process which is executing on the same CPU core. This occurs due to...

Alex Murray
14 May 2019


Canonical
7 May 2019

Ubuntu 14.04 LTS has transitioned to ESM support

Article Cloud and server

Extended Security Maintenance (ESM) is now available for Ubuntu 14.04 LTS to provide ongoing security patches for high and critical CVEs for UA Infrastructure customers.

Canonical
7 May 2019


Sarah Dickinson
26 April 2019

An introduction to AppArmor

Article Cloud and server

Cyber attacks are becoming more sophisticated, attack frequency is on the rise, and the cost of cybercrime damage is projected to reach $6 trillion annually by 2021. Traditional defensive measures such as firewalls and intrusion detection systems that operate at the network perimeter are no longer enough to protect...

Sarah Dickinson
26 April 2019


Canonical
7 March 2019

How to ensure the ongoing security and compliance of Ubuntu 14.04 LTS ‘Trusty Tahr’

Article Cloud and server

As 14.04 reaches the end of its five-year, Standard Security Maintenance, LTS window in April 2019, support for the OS is transitioning into a new phase – Extended Security Maintenance (ESM).

Canonical
7 March 2019


Canonical
26 February 2019

Ubuntu is EAL2 certified

Desktop Desktop

Canonical has received Common Criteria EAL2 certification. The evaluation covers a fresh install of Ubuntu 16.04.4 LTS on one of the supported platforms listed in the certification report. Common Criteria (CC) for Information Technology Security Evaluation is an international standard (ISO/IEC IS 15408) for Computer...

Canonical
26 February 2019


Sarah Dickinson
26 February 2019

Securing IoT device data against physical access

Article Internet of Things

Security remains the number one concern when designing and deploying IoT devices. High profile breaches continue to occur and concerns cease to subside. For any organisation, security needs to be front of mind and considered from the start – not as an afterthought. Having no mechanism in which to address security...

Sarah Dickinson
26 February 2019


Canonical
5 February 2019

Ubuntu 14.04 LTS Trusty Tahr Extended Security Maintenance

Article Desktop

Ubuntu 14.04 LTS – As 14.04 reaches the end of its five-year LTS window in April 2019, Ubuntu 14.04 LTS ‘Trusty Tahr’ transitions to Extended Security Maintenance (ESM). ESM is a feature available through Ubuntu Advantage, Canonical’s commercial support package. ESM as a stand-alone addition was available for 12.04...

Canonical
5 February 2019