Skip to main content

Blog posts tagged "Security"

An introduction to AppArmor

Cyber attacks are becoming more sophisticated, attack frequency is on the rise, and the cost of cybercrime damage is projected to reach $6 trillion annually by 2021. Traditional defensive measures such as firewalls and intrusion detection systems that operate at the network perimeter are no longer enough to protect today’s distributed ent

How to ensure the ongoing security and compliance of Ubuntu 14.04 LTS ‘Trusty Tahr’

As 14.04 reaches the end of its five-year, Standard Security Maintenance, LTS window in April 2019, support for the OS is transitioning into a new phase – Extended Security Maintenance (ESM).

Ubuntu is EAL2 certified

Canonical has received Common Criteria EAL2 certification. The evaluation covers a fresh install of Ubuntu 16.04.4 LTS on one of the supported platforms listed in the certification report. Common Criteria (CC) for Information Technology Security Evaluation is an international standard (ISO/IEC IS 15408) for Computer security certification

Securing IoT device data against physical access

Security remains the number one concern when designing and deploying IoT devices. High profile breaches continue to occur and concerns cease to subside. For any organisation, security needs to be front of mind and considered from the start – not as an afterthought. Having no mechanism in which to address security concerns can be as

Ubuntu 14.04 LTS Trusty Tahr Extended Security Maintenance

Ubuntu 14.04 LTS – As 14.04 reaches the end of its five-year LTS window in April 2019, Ubuntu 14.04 LTS ‘Trusty Tahr’ transitions to Extended Security Maintenance (ESM). ESM is a feature available through Ubuntu Advantage, Canonical’s commercial support package. ESM as a stand-alone addition was available for 12.04 only. Contact the Ubunt

Where eagles snap – A closer look

A couple of weeks ago, we talked about snap security, taking a journey through the eyes of a developer and handing over to a user who wants to install applications from the Snap Store. We discussed concepts like application confinement, interfaces, store review, and automatic updates. Today, we will look under the hood, and examine

Where eagles snap – snap security overview

Quite often, security and functionality are two opposing forces. Vendors are trapped in a zero-sum game between providing their users as much freedom in the software they use and limiting said freedom to create tightly controlled and secure products. But this does not have be the case. For the last several years, Linux users have

Secure VPN Connection with Ubuntu Core

As part of a personal drive to be less dependent on 3rd party Internet services, I’ve moved some things in house, under my own control. This includes self-hosting important shared files, photos and media at home. Which can pose a problem if I’m away from home and want to access those files. Previously, I would

Canonical publishes auto-apply vulnerability patch for Kubernetes

Charmed distribution of Kubernetes clusters auto-apply vulnerability patches for CVE-2018-1002105 On December 3 2018,  the Kubernetes project disclosed a security vulnerability in all versions of its popular container orchestration software. The vulnerability, CVE-2018-1002105, exists in the Kubernetes API server, and allows an attacker t

Ubuntu, security & compliance

Security, regulations and compliance are everyday issues for businesses, whether global or not. HIPAA, GDPR, MiFID II, and a whole host of other regulations, security and compliance demands are shaping the way businesses operate and the technologies that they can use. Although technological choices are not always able to completely solve

How Ubuntu is at the forefront of security & compliance

Whether it is HIPAA, MiFID II or GDPR, the importance of being compliant cannot be underestimated. Protecting your customers and avoiding the significant financial and reputational ramifications that threaten non-compliant organisations, is a must, and this starts with the technology powering your enterprise. Ubuntu is used by businesses

A guide to snap permissions and interfaces

Snap is a Linux application package management system which allow developers to easily publish self contained software packages (snaps) that work across many distributions and versions of Linux. Snaps have security at their heart, and are designed to ensure all applications support the principle of least privilege / authority. That is, ea

Canonical’s Current Security Certifications

Canonical has entered the security certifications space by achieving a few important security certifications for the first time on Ubuntu. Canonical has achieved FIPS 140-2 Level 1 certification for several cryptographic modules on Ubuntu 16.04. Canonical has also achieved Common Criteria EAL2 certification for Ubuntu 16.04. In addition,

Ubuntu updates for L1 Terminal Fault vulnerabilities

Today Intel announced a new side channel vulnerability known as L1 Terminal Fault. Raoul Strackx, Jo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin, Baris Kasikci, Frank Piessens, Mark Silberstein, Thomas F. Wenisch, Yuval Yarom, and researchers from Intel discovered that memory present in the L1 data cache of an Intel CPU core may

National Cyber Security Centre publish Ubuntu 18.04 LTS Security Guide

Last week the NCSC (National Cyber Security Centre) in the UK issued their latest publication which gives advice on how to configure Ubuntu 18.04 LTS in accordance with their security best practices. The National Cyber Security Centre (NCSC)is the UK government department responsible for providing guidance on Information Security to the U

IoT Security at Scale: Managing end-to-end security

Title: IoT Security at Scale: Managing end-to-end security for Commercial IoT Gateways Speakers: Justin Rigling, CTO, Rigado Date/Time: August 8, 12:00PM EST / 5:00PM BST Rigado, a Canonical partner, provides a secure, scalable gateway solution to companies deploying large-scale Commercial IoT applications. In this webinar, Rigado will sh