News (5)

Flaws found in BSD, Linux software updaters

The software update mechanisms used by most BSD and Linux operating systems can be tricked into installing buggy or known-to-be-compromised software on users' systems, creating serious security risks, according to new research. Read more »

Debian and Ubuntu OpenSSL generates useless crypto keys

For almost two years the OpenSSL library used by Linux distribution Debian has been generating useless cryptographic keys — although Debian has issued a patch, experts warn that systems may still be exposed. Read more »

Apple Mac OS X patch plugs 31 vulnerabilities

Apple Computer on Tuesday in the US released a security update for Mac OS X to repair 31 vulnerabilities, including a zero-day Wi-Fi hijack flaw. Read more »

Open source key to Victorian schools

Victoria's Department of Education and Training is continuing to develop in-house server software it built on top of open-source tools to bring its state-wide wireless network to life. Read more »

Hyperthreading footprints expose Intel P4 users

Intel is acting to calm fears that technology in its Pentium 4 processors will allow hackers to steal passwords by reading 'footprints' in the cache. Read more »

Features (8)

Find and fix weak OpenSSL/OpenSSH keys: Debian-based Linux vulnerability

A recent vulnerability was found in the OpenSSL package as provided by Debian and Debian-based Linux distributions, such as Ubuntu, that broke the effectiveness of the OpenSSL PRNG (Predictable Random Number Generator). Read more »

Learn to use the openssl command-line program

OpenSSL can be used to create, request, sign, and revoke certificates and can also be used to perform other cryptographic operations such as creating hashes for files, testing SSL connections, and more. Read more »

Set up user accounts quickly and securely

When you need to set up a user account to give a user shell access to the system, the only logical choice of login tool is OpenSSH. With SSH keys, all you need from the user is his SSH public key, and all he needs from you is the IP address or hostname with which to log in. Usually, this is sufficient. Read more »

A look inside Google's open source kitchen

Google's Chris DiBona says the search giant has a lot of involvement in open source, but is also a firm believer in proprietary software. Read more »

Jump into LAMP development with XAMPP

Want to get a LAMP development effort fired up without the hassles of configuring everything from scratch? XAMPP makes it a breeze. Read more »

Use SSL to secure your Apache-based e-commerce transactions

Secure Sockets Layer technology ensures that transactions are encrypted and safe from outside influences. Get the basics of setting up SSL on Apache in this overview. Read more »

Authenticate clients and e-transactions with SSL certificate authority

Secure Sockets Layer technology ensures that transactions are encrypted and safe from outside influences. Get the basics of setting up SSL Certificates of Authentication. Read more »

Tools for securing your XML documents

The W3C offers two specifications for securing your XML documents, XML Signature and XML Encryption. Find out which tools can help create secure XML documents that adhere to these standards. Read more »

Log in


Sign up | Forgot your password?

  • Staff Microsoft prescribes more REST

    Details have begun to emerge about the next versions of Visual Studio and Windows Server this week -- and the message from Redmond is to REST up Read more »

    -- posted by Staff

  • Chris Duckett .NET looks to REST

    With news that REST will play a big part in the next version of the .NET Framework, it is timely to take a look at ADO.NET. Read more »

    -- posted by Chris Duckett

  • Renai LeMay Spellr.us needs a new dictionary

    One of the only Australian start-ups to present at the recent round of conferences in the US was Sydney-based spellr.us, which has launched a Web-based tool to check and monitor websites for spelling mistakes. Read more »

    -- posted by Renai LeMay

What's on?