Blog posts tagged
"Security"

196 posts


Canonical
16 December 2021

Log4Shell: Log4j remote code execution vulnerability

Article Security

Last updated on 18th January 2022 to include the latest vulnerability updates. A high impact vulnerability was discovered in Apache Log4j 2, a widely deployed software component used by a lot of Java applications to facilitate logging. An attacker who can control the log messages or their parameters can cause the...

Canonical
16 December 2021


Florencia Cabral Berenfus
15 December 2021

Security vulnerabilities on the Data Distribution Service (DDS)

Article Robotics

Learn more about DDS, and how to stay protected while using it If you are currently running the Robot Operating System 2 (ROS 2), this piece is especially relevant to the security of your robots. A few weeks ago, a group of security researchers reported 13 security vulnerabilities affecting some of the most used...

Florencia Cabral Berenfus
15 December 2021


Hugo Huang
22 November 2021

FIPS on Google Cloud

Article Cloud and server

In August 2016, the United States government announced a new federal source-code policy, which mandates that at least 20% of custom source code developed by or for any agency of the federal government must be released as open-source software (OSS). The memo of this policy also states that the Federal Government spends...

Hugo Huang
22 November 2021


Hugo Huang
16 November 2021

Secure your Open-Source Freedom for 10 years

Article Cloud and server

If this is your desire, it is Ubuntu Pro’s commitment: “Ubuntu Pro will secure your Open-Source Freedom for 10 years”. Security and Freedom shouldn’t be a debate, a trade-off, even a dilemma. Security shouldn’t be your concern when you embrace Open-Source. A 10-year commitment Canonical backs Ubuntu Pro for 10 years,...

Hugo Huang
16 November 2021


Valentin Viennot
10 November 2021

Intel and Canonical to secure containers software supply chain

Article Ubuntu

Intel and Canonical collaborate to build and publish OpenVINO™ container images based on the Ubuntu ecosystem. This work aims to provide trusted, secure, and developer-friendly container images for AI/ML applications in many industries. The provenance challenge facing cloud software Today, cloud-native developers...

Valentin Viennot
10 November 2021


Lech Sandecki
28 October 2021

Enhance the security of your open-source applications and share feedback

Article Ubuntu

Are you spending time on high-impact, high-value activities, or are you constantly derailed by maintenance, support, and deployment challenges? Does your organisation consume open-source software that needs security patching? Where do you get the security updates from, and how do you track what’s available? Are you...

Lech Sandecki
28 October 2021


Alex Murray
19 October 2021

What’s new in security for Ubuntu 21.10?

Article Ubuntu

Ubuntu 21.10 is the latest release of Ubuntu and comes as the last interim release before the forthcoming 22.04 LTS release due in April 2022. As the interim releases are often proving grounds for upcoming features in the LTS releases, this provides a good opportunity to take stock of some of the latest security features

Alex Murray
19 October 2021


Gabriel Aguiar Noury
5 October 2021

ROS CVE alert; ensuring security for robotics

Article Robotics

Security for robotics is a priority for ROS developers and crucial for the success of robotics. Open Robotics has registered a CVE that affects ROS Kinetic, Melodic and Noetic. CVE stands for Common Vulnerabilities and Exposures, and it’s an international system that provides a method for publicly sharing information on...

Gabriel Aguiar Noury
5 October 2021


Canonical
13 September 2021

Enterprise Open Source Summit: A Business Perspective on Open Source

Article Canonical announcements

November 10, 2021 Canonical, Nextcloud, Collabora, Linbit, OpenNebula and Factor Group will present business perspectives on the use of open source in enterprise environments at the Enterprise Open Source Summit event scheduled for November 10, 2021. Open source solutions are becoming increasingly popular in all areas...

Canonical
13 September 2021


Nikos Mavrogiannopoulos
13 September 2021

Managing Livepatch on-prem

Article Cloud and server

Ubuntu Livepatch is the service and the software that enables organizations to quickly patch vulnerabilities on the Linux kernel. It enables uninterrupted service while reducing fire drills during high and critical severity kernel vulnerabilities. With Ubuntu Livepatch on-prem we enhance our service to enable...

Nikos Mavrogiannopoulos
13 September 2021


Nikos Mavrogiannopoulos
6 September 2021

How to develop Linux applications for FIPS on Ubuntu

Article Apps

This is the second article in our series regarding FIPS 140 and Ubuntu. The first part of this series, this article, covers running FIPS 140 applications on Ubuntu while this part is focused on the development of FIPS 140 applications on Ubuntu. What is FIPS and why should a developer care? Developing applications for...

Nikos Mavrogiannopoulos
6 September 2021


Nikos Mavrogiannopoulos
1 September 2021

Cybersecurity with Ubuntu

Article Cloud and server

The cybersecurity state of affairs can be described as too complex today. There is an enormous number of threats endangering sensitive data for the average IT team to cope with. Threats ranging from exposure of physical assets stored in an office, to “social engineering” attacks resulting in unauthorized access, or even...

Nikos Mavrogiannopoulos
1 September 2021


robgibbon
30 August 2021

Cloud PaaS through the lens of open source – opinion

Article Data Systems

Opinion piece by Rob Gibbon – Product Manager at Canonical. All views expressed are the author’s own. The open source perspective viz. PaaS Open source software, as the name suggests, is developed in the open. The software can be freely inspected by anyone, and can be freely patched as required to suit the security...

robgibbon
30 August 2021


Canonical
11 August 2021

FIPS 140-2 certification for Ubuntu 20.04 LTS!

Article Canonical announcements

Ubuntu, the world’s most popular operating system across private and public clouds has received the FIPS 140-2, Level 1 certification for its cryptographic modules in Ubuntu 20.04 LTS, including OpenSSL 1.1.1. This certification is built on Canonical’s track record in designing Ubuntu for high security and regulated...

Canonical
11 August 2021