Security News

Quickly audit and adjust SSH server configurations with SSH-audit (Help Net Security)
2016-10-14 14:30

SSH-audit is a standalone open source tool for auditing and fixing SSH server configurations. It has no dependencies and will run wherever Python is available. It supports OpenSSH, Dropbear SSH...

Old SSH Vulnerability at Center of Credential-Stuffing Attacks (Threatpost)
2016-10-13 15:27

Akamai warns that attackers are compromising IOT devices and using them as proxies to test stolen credentials against web-based applications.

Private SSH Key, Weak Default Credentials Removed From ExaGrid Appliances (Threatpost)
2016-04-07 15:11

ExaGrid has removed public-private pairings and weak, hardcoded default credentials from its disk-backup appliances.

SSH backdoor found in more Fortinet devices, exploit attempts spotted in the wild (Help Net Security)
2016-01-25 13:13

In case you missed it, Fortinet announced last week that the recently discovered FortiOS SSH backdoor - or, as they call it, "a management authentication issue" - has been found by its Product Securit...