Showing posts sorted by relevance for query ubuntu. Sort by date Show all posts
Showing posts sorted by relevance for query ubuntu. Sort by date Show all posts

Ubuntu 11.10 (Oneiric Ocelot) Released & Available For Download!!


Finally the countdown is over and now Ubuntu 11.10 (Oneiric Ocelot) released. It has been six months in the making and has occupied the time of a cast of thousands, finally the Debian derived GNU/Linux distribution we have all been waiting for is here. Ubuntu 11.10 the Oneiric Ocelot is released.
For more information about this release cheek the Ubuntu Wiki page

So what are you waiting for. Lets download Ubuntu 11.10 and enjoy.
 


-News Source (Ubuntu)


SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

in one week 2 Linux distribution (fedora 15 & Linux Mint 11)


It's not every week that sees the launch of a major release from one of the most popular Linux distributions. This week, however, we've had the benefit of not just one but two such landmark debuts.

Fedora 15, or "Lovelock," and Linux Mint 11, or "Katya," both made their grand entrances onto the world stage in the past few days, giving users of the free and open sourceLinux operating system yet more compelling options to choose from. Wondering what you'll find in these new releases? Here's a rundown of some of their key new features.


Fedora 15 'Lovelock'

As promised previously, the final release of Fedora 15 launched on Tuesday to a global audience of fans eager to check out its implementation of the GNOME 3 desktop. Linux desktops are a particularly critical subject, of course, now that the default Unity desktop in Ubuntu 11.04 "Natty Narwhal" has proven so controversial, and the Fedora team announced that it was abandoning its own Unity efforts some time ago. GNOME 3 may be slightly less controversial, but it's still generating a lot of discussion. Other key new features in this latest release from Fedora--which is currently the third most popular Linux distribution, according to DistroWatch--are the availability of the Btrfs filesystem as a menu item in the installer and better crash reporting. A redesigned SELinux troubleshooter is also a part of the new release, as is higher compression in live images. Lovelock features better power management as well, thanks in part to a daemon that tunes system settings dynamically to balance between power consumption and performance. LibreOffice and Firefox 4 are now included, while updates for systems administrators include a dynamic firewall, more consistent network device naming and the BoxGrinder appliance creator. A full list of features is available on the Fedora site, where the new release is also available for free download.
Linux Mint 11 'Katya'
Behind only Ubuntu in popularity on DistroWatch's list, Linux Mint is a very user-friendly Ubuntu-based distribution, as I've noted before. This new release, meanwhile, has been widely anticipated as an alternative option for those who aren't enchanted by Ubuntu's Unity. Released on Thursday, Linux Mint 11 "Katya" uses neither Unity nor GNOME 3; rather, the project developers chose to stick with GNOME 2.32 instead, providing a comfortable and familiar option for fans of that desktop environment. The software is still based on Ubuntu 11.04, however, and features one-click installation of multimedia codecs and extra applications. The Software Manager has been enhanced with user interface improvements, a new splash screen and better search capabilities, while the Update Manager offers better performance as well as improvements to its user interface. Improvements to the Desktop Settings tool make it more "desktop-agnostic," the project team says, while system improvements include a new "apt download" command and Adobe Flash plugins. LibreOffice, gThumb and Banshee are among the default applications in Katya, which is available for free download on the Linux Mint site. 



SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Linux kernel (OMAP4) Vulnerabilities, Affected Distribution Ubuntu 10.10


kernel incorrectly handled certain VLAN packets leading to a remote attacker could send specially crafted traffic to crash the system, leading to a denial of service. EFI GUID partition table was not correctly parsed leading to  A physically local attacker that could insert mountable devices could exploit this to crash the system or possibly gain root privileges.

=============================================
Ubuntu Security Notice USN-1220-1
September 29, 2011

linux-ti-omap4 vulnerabilities

=============================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 10.10

Summary:
Multiple kernel flaws have been fixed.
Software Description:
- linux-ti-omap4: Linux kernel for OMAP4

Details:-

Ryan Sweat discovered that the kernel incorrectly handled certain VLAN
packets. On some systems, a remote attacker could send specially crafted
traffic to crash the system, leading to a denial of service.
(CVE-2011-1576)
Timo Warns discovered that the EFI GUID partition table was not correctly
parsed. A physically local attacker that could insert mountable devices
could exploit this to crash the system or possibly gain root privileges.
(CVE-2011-1776)
Dan Rosenberg discovered that the IPv4 diagnostic routines did not
correctly validate certain requests. A local attacker could exploit this to
consume CPU resources, leading to a denial of service. (CVE-2011-2213)
Dan Rosenberg discovered that the Bluetooth stack incorrectly handled
certain L2CAP requests. If a system was using Bluetooth, a remote attacker
could send specially crafted traffic to crash the system or gain root
privileges. (CVE-2011-2497)
Mauro Carvalho Chehab discovered that the si4713 radio driver did not
correctly check the length of memory copies. If this hardware was
available, a local attacker could exploit this to crash the system or gain
root privileges. (CVE-2011-2700)
Herbert Xu discovered that certain fields were incorrectly handled when
Generic Receive Offload (CVE-2011-2723)
Time Warns discovered that long symlinks were incorrectly handled on Be
filesystems. A local attacker could exploit this with a malformed Be
filesystem and crash the system, leading to a denial of service.
(CVE-2011-2928)
Dan Kaminsky discovered that the kernel incorrectly handled random sequence
number generation. An attacker could use this flaw to possibly predict
sequence numbers and inject packets. (CVE-2011-3188)
Darren Lavender discovered that the CIFS client incorrectly handled certain
large values. A remote attacker with a malicious server could exploit this
to crash the system or possibly execute arbitrary code as the root user.
(CVE-2011-3191)

-News Source (Ubuntu)
 
 

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

5 "Uncommon" Linux Distributions

 CrunchBang

CrunchBang it's a minimalistic distribution based on Debian 6.
Why minimalistic ?
The default Desktop Environment it's Openbox, that for people used to Gnome or KDE it's a big difference, you don't have Icons, fancy graphical effects (compiz anyone? ) or even a menu in one of the corners that show all your programs.
You get a clean, black and white desktop, on the right side you have the live statistics of your resources usage, and the list of commands you can use (example, super + l to lock screen).
I've been amazed by the low use of resource of this distribution, 50 MB after you login into your desktop, so you can use all of your resource for your applications. It's also perfect for old computers with just 256 MB of Ram.
Così si pensa, ok, ma probabilmente sarà riempito con piccoli programmi inutili,niente mi può davvero usare per il mio ufficio / lavoro o tempo libero.
Wrong !
There is already a good number of software that you can use to do your usual things, like Chromium as browser or Gimp as Image Editor or VLC for the multimedia; also, as stated, this distribution is based on Debian 6, so you can have Openoffice, Mozilla 4 or many others programs.
If you have enough of the big Desktop environment this one is for you.

 Gentoo

I've fall in love with Gentoo in 2004, and we are still together.
In Gentoo the binary packages are not available (there are some exceptions for big package). Each package must be downloaded and compiled on the PC of the user with the flags he has choose, so that you get from each package the best performance, or at least this is the theory.
While in the years I've saw that some of my programs have better start up time respect of precompiled distributions this is usually due to the fact that you can select every single aspect of each package, so as example you could choose that your Multimedia player support avi,ogg and divx only, so probably you have fast performance and a quick startup time but less codec; so for me the main attractive of Gentoo is total customization, and after that speed.
In any case, the good thing is that each new update is released when available. This approach makes Gentoo a distribution always updated, this distribution don't has release cycle like Ubuntu and Fedora, but is called "rolling" it means that it's constantly updated.
For example i keep the same installation from 2004 to 2008 on my previous computer, just updating packages when they come out, and during all that time i moved from kernel 2.4 to 2.6 and made a lot of change in every package, still the distribution keeped it's consistency.
The package management is efficient and easy to use. On the other hand, the installation of newsystems and large packages can be very tedious, even with a very fast processor, so if you want to approach this great distro...take your time, be patient and at the end you'll have learnt a lot more of GNU/Linux.

 Pinguy OS

 
it's more or less the opposite of Gentoo, a distribution to make things easy to the beginners.
This OS is for people that have never used Linux before or for people that just want an out-of-the-box working OS without doing all the tweaks and enhancements that everyone seems to do when installing a fresh copy of Ubuntu or other Linux based Distro's. 
So all the programs in Pinguy OS have been chosen because of their ease of use and functionality, I also changed every file type to open with the right program, like for some reason by default .iso are opened with Archive Manager so I changed that to Brasero Disc Burner.
All the multimedia codecs are there. So there is Oracle Java and Adobe Flash player.

Pinguy OS also helps reduce your carbon footprint because it runs Granola in the background. Granola is a free tool that helps reduce the power consumption of your computer without affecting its performance. 
So this distro is really suggested if you are not used to Linux or don't want to spend time in tweaking/configuration


Aptosid

 
is an operating system based on the Debian GNU/Linux unstable branch, codenamed sid. The project stems from criticism by users of Debian Linux newbies (too difficult toinstall, configure and maintain, requiring the use of console commands or editing configuration files) are the basis of Aptosid, whose purpose is to offer tools and support to make Debian Sid easy to configure and stable enough for the user desktop for the professional. Aptosid supports 32 and 64 bit architectures, graphical user interface KDE or Xfce, lite or full version.
The full ISO is around 2gb, but it has really everything, both for new and expert users. Despite its size, loading from a live dvd is really fast and stable, just like his distro "mother" Debian.
if you like Debian, but want updated software this is a good choice for sure.


Bodhi Linux

 
This is a fresh new project, Bodhi is a minimalistic, enlightened (the Desktop Environment), Linux desktop. Bodhi is built on top of an Ubuntu 10.04 core, using the latest, elegant Enlightenment desktop, all accessed by the light weight LXDM login manager. Bodhi uses dpkg and apt-get for package management.
Bodhi Linux is a very minimal Ubuntu based Linux distro with Enlightenment(E17) as the default desktop(window manager). Standard ISO size is just around 350MB and the latest release is based on Ubuntu 10.04 "Lucid Lynx". System requirements will tell you the whole story. Bodhi Linux requires just 1.5GB HD space, 300mhz i386 Processor and just 128MB of RAM! Thats how minimal things can get.
One of the first things you are going to notice while logging into Bodhi Linux is a prompt that will ask you to choose the theme and the applications you would like to have in your desktop as default.
Dock application at the bottom is called “Shelf” and like Docky or AWN, Shelf is quite easy to use and configure. Bodhi Linux has Nautilus as the default file browser and also has Synaptic Package Manager as a default option. Nautilus in Bodhi Linux is already powered by awesome Nautilus Elementary hack.

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Ubuntu 11.10 (Oneiric Ocelot) Alpha 3


Canonical has released the third alpha version of Ubuntu 11.10.The distribution includes the Linux Kernel 3.0 for the first time, even if Canonical goes its own way and lists the Kernel version as 3.0.0.
Ubuntu 11.10 alpha 3 includes Wi-Fi driver support for Realtek's RTL8192CU, RTL8188CU as well as RT53xx chipsets. The current alpha still integrates Gnome 3.1.4 while the final version is likely to get Gnome 3.2. Other new features include a new task manager for Canonical's Unity Shell, Thunderbird as new email client as well as a new version of the news client Gwibber.
Ubunto 11.10 alpha 3 is available for download for 32-bit and 64-bit systems as well as OMAP4 environments. Canonical intends to release two more beta versions for September 1 and 22. The final version of the distribution is scheduled for a October 13 release

To see the official statement of Ubuntu click Here

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Critical vulnerability in open source Eucalyptus clouds


Researchers at the Ruhr-University Bochum have discovered a critical vulnerability in Eucalyptus, an open source implementation of the Amazon EC2 cloud APIs. An attacker can, with access to the network traffic, intercept Eucalyptus SOAP commands and either modify them or issue their own arbitrary commands. To achieve this, the attacker needs only to copy the signature from one of the XML packets sent by Eucalyptus to the user. As Eucalyptus did not properly validate SOAP requests, the attacker could use the copy in their own commands sent to the SOAP interface and have them executed as the authenticated user.
All versions up to and including 2.0.2 are vulnerable; a fixed version, 2.0.3, is available to download. Ubuntu's Eucalyptus-based Ubuntu Enterprise Cloud (UEC) is also vulnerable; updates for Ubuntu 10.04 LTS, 10.10 and 11.04 are already available in Canonical's repositories. Eucalyptus does note that the changes made to close the holes may lead to some existing tools failing to work as the system will interpret them as a replay attack if they issue commands too rapidly.

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Google's reCAPTCHA System Cracked By Hackers at Defcon Group

Google's reCAPTCHA System Cracked By Hackers at Defcon Group 949

Web-security under serious trouble, a group of hackers from Defcon Group 949 managed to crack Google's reCAPTCHA system with a success rate of better than 99 percent. Last week in LayerOne security conference in Los Angeles they demonstrated their research. But just an hour before the presentation, Google made improvements to its CAPTCHA system and fixed those flaws.
In their site they said - that they have developed everything using Ubuntu 10.04, Ubuntu 11.04, and Debian 6, however it should work on any Linux distribution without too much effort. The one thing we noticed when testing it on Ubuntu 12.04 is that it comes with a slightly different version of SoX, which has some changes which drops accuracy from 99% to around 60%. So for best results, you'll want to use SoX v14.3.0 (or v14.3.1). 

They have also developed a tool named "Stiltwalker" a proof of concept tool that defeats Google's reCAPTCHA with an insanely high accuracy (99%). All the research, code, tools and examples used in the reCAPTCHA domination made available to download for all.






SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Kernel Vulnerability In Ubuntu Oneiric Ocelot



Vasiliy Kulikov, a security resercher recently discovered vulnerability in the Linux kernel, affecting all the Ubuntu 11.10 (Oneiric Ocelot) operating system. Linux kernel vulnerability that allows a local attacker to read various information on the system, leading to loss of privacy, because taskstats didn't enforce access restrictions. 
To know more about the vulnerability click Here 
This security flaw can be fixed if you update your Ubuntu 11.10 (Oneiric Ocelot) system to the linux-image-3.0.0-13 (3.0.0-13.22) kernel package. Run the Software Update app to do that and reboot the system. 



SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Infondlinux: Install Useful Security Tools and Firefox Addons!



infondlinux is a script that installs most of tools, that we use during penetration tests and capture the flag tournaments. It is a post configuration script for Ubuntu Linux. We can also install it on other *nix system but not all of the below mentioned tools may work depending on environment. It has been actively tested on Ubuntu 10.10.
It installs useful security tools and Firefox addons. Tools installed by script are listed at the beginning of source code, which we can edit as per our requirement.
List of security tools included:
Debian packages:

  • imagemagick
  • vim
  • less
  • gimp
  • build-essential
  • wipe
  • xchat
  • pidgin
  • vlc
  • nautilus-open-terminal
  • nmap
  • zenmap
  • sun-java6-plugin et jre et jdk
  • bluefish
  • flash-plugin-nonfree
  • aircrack-ng
  • wireshark
  • ruby
  • ascii
  • webhttrack
  • socat
  • nasm
  • w3af
  • subversion
  • mercurial
  • libopenssl-ruby
  • ruby-gnome2
  • traceroute
  • filezilla
  • gnupg
  • rubygems
  • php5
  • libapache2-mod-php5
  • mysql-server
  • php5-mysql
  • phpmyadmin
  • extract
  • p0f
  • spikeproxy
  • ettercap
  • dsniff :
    • arpspoof Send out unrequested (and possibly forged) arp replies.
    • dnsspoof forge replies to arbitrary DNS address / pointer queries on the Local Area Network.
    • dsniff password sniffer for several protocols.
    • filesnarf saves selected files sniffed from NFS traffic.
    • macof flood the local network with random MAC addresses.
    • mailsnarf sniffs mail on the LAN and stores it in mbox format.
    • msgsnarf record selected messages from different Instant Messengers.
    • sshmitm SSH monkey-in-the-middle. proxies and sniffs SSH traffic.
    • sshow SSH traffic analyser.
    • tcpkill kills specified in-progress TCP connections.
    • tcpnice slow down specified TCP connections via “active” traffic shaping.
    • urlsnarf output selected URLs sniffed from HTTP traffic in CLF.
    • webmitm HTTP / HTTPS monkey-in-the-middle. transparently proxies.
    • webspy sends URLs sniffed from a client to your local browser
  • unrar
  • torsocks
  • secure-delete
  • nautilus-gksu
  • sqlmap
Third party packages:
  • tor
  • tor-geoipdb
  • virtualbox 4.0
  • google-chrome-stable
Manually downloaded software’s and versions:
  • DirBuster (1.0RC1)
  • truecrypt (7.0a)
  • metasploit framework (3.6)
  • webscarab (latest)
  • burp suite (1.3.03)
  • parosproxy (3.2.13)
  • jmeter (2.4)
  • rips (0.35)
  • origami-pdf (latest)
  • pdfid.py (0.0.11)
  • pdf-parser.pym (0.3.7)
  • fierce (latest)
  • wifite (latest)
  • pyloris (3.2)
  • skipfish (1.86 beta)
  • hydra (6.2)
  • Maltego (3.0)
  • SET
Author made scripts:
  • hextoasm
  • md5crack.py (written by Corbiero)
  • chartoascii.py
  • asciitochar.py
  • rsa.py
Firefox extensions:
  • livehttpheaders
  • firebug
  • tamperdata
  • noscript
  • flashblock
  • flashgot
  • foxyproxy
  • certificatepatrol
  • chickenfoot 1.0.7
Pretty good list of applications we must say.
How to install?
1
sudo infondlinux.sh
or
1
sh infondlinux.sh
Download infondlinux v0.5 (infondlinux.sh) here

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

BackTrack 5 ‘Revolution’ release ups the penetration testing ante


BackTrack,  the GNU/Linux distribution focused on digital forensics and penetration testing, has a new version out, with the public release (on May 10) of BackTrack 5, code-named Revolution, by the BackTrack development team. BackTrack focuses primarily on providing a native environment purely dedicated to hacking. This latest distro was eight months in the making, and boasts of significant improvements over its predecessor.
BackTrack 5 features a comprehensive arsenal of over 350 security-related tools to test everything from Web applications to RFID systems. The new version of BackTrack lives up to its “Revolution”  moniker in that it has been completely overhauled and rewritten from the ground up, providing  users with an optimized platform for penetration testing and digital forensics exercises. For the first time in its development road map, BackTrack now includes support for ARM-based systems — a significantly upgrade.

BackTrack 5 features

A major addition in the new version of BackTrack is the 64-bit offering. BackTrack 5 is based on Ubuntu Lucid Lynx v10.04, the latest long term support (LTS) release using Linux kernel v2.6.38. BackTrack 5 is the first version to be released with the complete source code in its repositories. This addition is expected to clear up licensing issues that existed in the previous Backtrack distros. BackTrack 4 is no longer available for download at the developer’s Website, and support for it has officially been discontinued.
Here is a more detailed look at important features of BackTrack 5.
  • Support for KDE and Gnome
BackTrack 5 boasts of support for KDE Plasma (4.6), Gnome (2.6) and Fluxbox. This makes it much simpler to migrate from Gnome-based distributions. Unifying the desktop environment has the added advantage of an easier learning curve for new users. Streamlined images for each desktop environment (DE) are available on the backtrack website. Tool integration with supported environments is seamless with DE-specific menu structures. However, while Gnome has a smaller memory footprint and is less resource hungry, the Gnome versions lack default package managers, which need to be added separately.
KDE plasma desktop used in BackTrack 5

  • 32-bit and 64-bit support
The addition of 64-bit support in BackTrack 5 makes it possible to tap additional power for processor-intensive tasks such as brute force password cracking. The 32-bit and 64-bit images support various boot modes, including a “Stealth” mode that boots without generating network traffic and a “Forensics” mode for forensic purposes.
  •  ARM architecture support
 An ARM image of BackTrack 5 is available, having officially been tested on the Motorola Xoom tablet and the Motorola Atrix 4G smart phone by the developers. Custom chroot scripts are already available to run BackTrack 5 on Android systems with ARM processors.
Users have successfully deployed BackTrack 5 on Samsung Galaxy S and Sony Xperia smart phones. However, there are still some issues with these systems and not all features are available. There are known issues with wireless drivers on ARM-based systems including lack of support, for  WiFi packet injection.

BackTrack 5 on a Motorola Atrix 4G
Anant Srivastava, a Mumbai-based software developer and member of the null community, was one of the first to successfully run BackTrack 5 on a Sony Xperia X10. Srivastava used a rooted Xperia x10 running Android 2.2 (Froyo) with an Android terminal application and an Android VNC viewer.


  • Packaged tools
BackTrack 5’s arsenal of tools have been upgraded to the latest versions. BackTrack 5 comes preloaded with tools for LAN and WLAN sniffing, vulnerability scanning, digital forensics and password cracking. The Metasploit exploit framework v3.7.0 has been packaged into BackTrack 5. The tools are organized into a comprehensive menu structure, streamlined to comply with the PTES and OSSTMM standards.

Conclusion

BackTrack 5 promises to surpass previous versions in terms of functionality and stability. However, users have raised concerns over the discontinued support for Ubuntu repositories. BackTrack 5 instead uses its own repositories, which have been benchmarked to work with its tools. The BackTrack 5 team justified this move by highlighting performance concerns when the custom features of BackTrack’s tools are used with other repositories, including corruption of the installation. There is no official support for any repository other than that which is provided by the developers.



SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Linux Mint 14 "Nadia" Released With MATE, Cinnamon & MDM

Linux Mint 14 "Nadia" Released With MATE, Cinnamon & MDM

Its almost six months have past when Linux Mint 13 “Maya” was released, but now its time to upgrade it as the developers at Linux Mint has officially released and declared the availability of Linux Mint 14 code named "Nadia". Linux Mint 14 is based on Ubuntu 12.10, but offers a more traditional choice of desktop environments instead of Ubuntu's often controversial Unity interface. The two flavors available offer two different desktops, one with the project's own custom-built Cinnamon (a GNOME 2-like user interface based on GNOME 3) and the MATE fork of GNOME 2. According to the blog post by Linux Mint project founder Clement "Clem" Lefebvre -For the first time since Linux Mint 11, the development team was able to capitalize on upstream technology which works and fits its goals. After 6 months of incremental development, Linux Mint 14 features an impressive list of improvements, increased stability and a refined desktop experience. 

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Serv-U FTP Server Added In RHEL Catalog As A Secure File Transfer Application

Serv-U FTP Server Added In RHEL Catalog As A Secure File Transfer Application & Will Also Support  Ubuntu, OpenSUSE, Mint
Red Hat enhancing more security in RHEL. After RhinoSoft joined the Red Hat partner program as an independent software vendor soon Serv-U FTP Server was added to the official Red Hat Linux product catalog as a secure file transfer application. Not only Red Hat Enterprise Linux (RHEL), Serv-U will also supports Fedora, Ubuntu, OpenSUSE, Mint, CentOS and the Amazon Linux AMI for its EC2 cloud computing deployment.
"When we ported Serv-U to Linux last year it gave Linux administrators new capabilities like web-based administration, mobile transfers and integration with third-party portals," said RhinoSoft President Mark Peterson. "This year we reaffirmed our commitment to the Linux community by aligning with its largest platform provider."
"Our solutions make secure file transfer affordable to businesses, especially those facing budget challenges," said RhinoSoft VP of Product Management Jonathan Lampe. "Supporting Serv-U on a wide variety of platforms helps our customers save money through reduced training and overhead costs."
Brief About RhinoSoft:-
RhinoSoft is the global leader in affordable file transfer, with more than 90,000 business customers, including nine of the Fortune 10, in 90 different countries. Its award-winning and U.S. Department of Defense-certified Serv-U FTP Server and FTP Voyager client products support FTP, SFTP, FTPS and web-based HTTP/S transfers over FIPS 140-2 validated channels while continuing to incorporate emerging technologies such as mobile computing, IPv6, native 64-bit computing and UTF-8/Unicode internationalization.




SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

BackBox Linux 3 Released! To Perform Penetration Tests & Security Assessments

BackBox Linux 3 Released! To Perform Penetration Tests & Security Assessments

In past we have discussed many times about BackBox, which is a Linux distribution based on Ubuntu. It has been developed to perform penetration tests and security assessments. Designed to be fast, easy to use and provide a minimal yet complete desktop environment. Its own software repositories, always being updated to the latest stable version of the most used and best known ethical hacking tools. Now a days along with  BackTrack this Ubuntu based penetration testing distribution has became very popular in hacker communities, even several penetration testers also using BackBox. Like other popular Pen testing distro, BackBox also get updated periodically. This time BackBox developer team has announced a major release BackBox Linux, version 3.0. The major release include features such as the new Linux Kernel 3.2 flower and Xfce 4.8. Apart from the system major upgrade, all auditing tools are up to date as well. 

What's new:- 
  • System upgrade
  • Bug corrections
  • Performance boost
  • Improved start menu
  • Improved Wi-Fi dirvers (compat-wireless aircrack patched)
  • New and updated hacking tools
System requirements:- 
  • 32-bit or 64-bit processor
  • 512 MB of system memory (RAM)
  • 4.4 GB of disk space for installation
  • Graphics card capable of 800×600 resolution
  • DVD-ROM drive or USB port
To Download BackBox Linux Version 3.0 Click Here





SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

BackBox Linux 2.01 (Penetration Testing Distribution) Released


Earlier we have talked about BackBox Linux. Now a days it has became a very common penetration testing distribution. Now we have version 2.01 of BackBox Linux. 

Brief About BackBox :-
BackBox is a Linux distribution based on Ubuntu. It has been developed to perform penetration tests and security assessments. Designed to be fast, easy to use and provide a minimal yet complete desktop environment, thanks to its own software repositories, always being updated to the latest stable version of the most used and best known ethical hacking tools. The new release include features such as Ubuntu 11.04, Linux Kernel 2.6.38 and Xfce 4.8.0.

What's New In This Release:-
  • System upgrade
  • Performance boost
  • New look
  • Improved start menu
  • Bug corrections
  • New sections such as Forensic Analysis, Documentation & Reporting and Reverse Engineering
  • New Hacking tools and updated tools such as dradis 2.8, ettercap 0.7.4.2, john 1.7.8, metasploit 4.2, nmap 5.51, set 2.5.2, sleuthkit 3.2.1, w3af 1.0, weevely 0.5, wireshark 1.6.3, etc.

To Download BackBox Click Here



SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Linux Mint 16 "Petra" Released With Choice of MATE or Cinnamon

Linux Mint 16 "Petra" Released With Choice of MATE or Cinnamon

Earlier we have talked many times on Linux Mint, it is one of most modern, elegant and comfortable operating system based on Ubuntu or Debian which is both powerful and easy to use. The Linux Mint project has started  in 2006, since then the consistent effort of it's developers and contributors has made Linux Mint the 4th most widely used home operating system behind Microsoft Windows, Apple Mac OS and Canonical's Ubuntu. As promised from beginning the mint team used to release their new version in every six months. The last we got was Linux Mint 15 'Olivia'. Again also the team proudly to announced the release of Linux Mint 16 code named "Petra". There's been quite a lot of anticipation for the next version of Linux Mint, and as expected the result is indeed satisfactory. According to the official blog of Linux Mint- "Petra" took 6 months of incremental development on top of stable and reliable technologies. This new release comes with updated software and brings refinements and new features to make your desktop even more comfortable to use. This new release comes with updated software and brings refinements and new features to make your desktop even more comfortable to use." One of the more interesting updates of the release is version 2.0 of Cinnamon (a fork of GNOME Shell), with a large number of new features: "Cinnamon 2.0 represents 5 months of development and 856 commits from 28 developers. It features a lot of bug fixes but also brand new features and many improvements." Lets look at the new features at a glance:

New features in Linux Mint 16 MATE:-
  • Login Screen
  • USB Stick support
  • Performance improvements
  • Software Manager
  • System Improvements
  • Artwork Improvements
  • Main Components 


For a complete overview and to see screenshots of the new features Linux Mint 16 click here. The Linux Mint site has a list of new features separately for both MATE and Cinnamon. Make sure to read the “Release Notes” to be aware of important info or known issues related to this release. So dear friends what are you waiting for! lets download Mint 16 and explore it. 




SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Updated BackBox Linux 1.05 is now avilable



BackBox is a Linux distribution based on Ubuntu Lucid 10.04 LTS developed to perform penetration tests and security assessments. Designed to be fast, easy to use and to provide a minimal yet complete desktop environment thanks to its own software repositories always been updated to the last stable version of the most known and used ethical hacking tools.

This is the official change log:
  • New ISO image (32bit & 64bit)
  • System upgrade
  • Performance boost
  • New look and feel
  • Improved start menu
  • Bug fixing
  • Hacking tools new or updated: Firefox 4, Hydra 6.2, Kismet 2011.03.2, Metasploit Framework 3.6.0, NMap 5.51, SET 1.3.5, SqlMap 0.9,  sslstrip 0.8, w3af 1.0-rc5, weevely 0.3, WhatWeb 1.4.7, Wireshark 1.4.5, Zaproxy 1.2, etc.
This BackBox Linux 1.05 features the following upstream components: Ubuntu 10.04, Linux 2.6.32 and Xfce 4.6.1. Slowly, yet surely, this distribution is going to be great!
Download BackBox Linux 1.05 (backbox-1.05-i386.iso) here.

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Finally Flash 11 beta 64-bit Support For Linux is Now Available

Adobe has released the first beta of Flash 11, a major update of the rich media browser plug-in. A significant change in this version of Flash is the availability of 64-bit builds for Windows, Linux, and Mac OS X.
The long-overdue delivery of 64-bit support is a major milestone for Adobe. The company first demonstrated an experimental 64-bit Flash plug-in prototype in 2008 and vowed to eventually deliver support for the x64 architecture across all of the major desktop operating systems. The plan had to take a backseat, however, as Adobe's focus shifted to other priorities. Improving Flash's performance and reliability on mobile devices has consumed much of the company's attention over the past year.
Adobe dropped its previous experimental 64-bit Flash plug-in roughly a year ago, citing the need for significant architectural changes. At the time, we joked that Flash's 64-bit support might finally land at about the same time as Duke Nukem Forever. It's sort of funny how that worked out. Unlike Duke's less-than-triumphant return, however, the new 64-bit Flash plugin actually lives up to its promise.
Linux users have typically had to rely on frameworks like nspluginwrapper to use the 32-bit Flash plug-in in a 64-bit browser. Due to native 64-bit support, the new beta version of the Flash plug-in can be used without a shim. We briefly tested it on Ubuntu 11.04 in the Firefox Web browser. In light of Adobe's controversial decision to discontinue Adobe AIR on the Linux platform, it's a bit surprising that it is treating the operating system as a first-class citizen with 64-bit support in Flash 11.

In addition to 64-bit support, the new plug-in also introduces the new Stage3D APIs—Adobe's Molehill project—which provides hardware-accelerated 3D rendering capabilities in the same vein as WebGL. The runtime has also gained improved JSON handling and some technical improvements that make garbage collection less intrusive. Another nice addition is support for H.264 encoding of real-time video streams captured from the user's camera—offering better compression for video chat and other similar kinds of applications.
The plug-in is available for download from Adobe's website in 32-bit and 64-bit flavors. Adobe warns, however, that the beta is still a work in progress and not intended for serious day-to-day use. I didn't encounter any serious problems during my brief test of the plugin.
To see the official Announcement of Adobe Click Here 


-News Source (ARS & Adobe)

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Z-Admin (New GUI Admin For Zarafa)

                                    
Zarafa has released version 1.0 of Z-Admin, the company's next generation, its an open source administration interface for the Zarafa Collaboration Platform (ZCP). With the Z-Admin web application, system administrators can set up, configure, monitor and maintain a Zarafa mail server using any modern browser. To develop Z-Admin, Zarafa worked with German firm bitbone to integrate the open source Yaffas (Yet another framework for administering servers) administration framework into the groupware server.As can be expected, the tool's main administrative focus is on the mail server area. From basic mail server settings to spam filter rules, system administrators can now do their work using the Z-Admin GUI. Admins can also check memory consumption and cache settings at runtime, and optimise them if required. For editing and managing users and groups, Z-Admin can – depending on the requirements – either use the ZCP server's data or access an external OpenLDAP or Active Directory server.
Licensed under the AGPLv3, Z-Admin 1.0 is available to download from the company's site, and is compatible with Red Hat Enterprise Linux (RHEL) and Ubuntu Server.

To Download Z-Admin Click Here

SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

"CloudOpen" Open-source Cloud Conference Will Be Hosted By Linux Foundation on August

"CloudOpen" Open-source Cloud Conference Will Be Hosted By Linux Foundation on August
The Linux Foundation announced that it would hold a symposium on the cloud, big data and open source this August in San Diego dubbed CloudOpen. Topics like Hadoop, Gluster, Chef and KVM -- in addition to Linux -- are to be on the menu, as the event aims to inform developers and IT operations personnel alike.
Amanda McPherson, vice president of marketing and developer services for the Linux Foundation, said that the free exchange of ideas is a crucial concern for the community.
"This conference is built on one belief: open works. We know this from experience and know that the cloud demands it in order to be successful for the long term. Because Linux, open-source software and collaborative development are the foundations of the cloud, it's important to provide a vendor-neutral forum where those who are committed to openness can advance this work and users and industry can learn about 'open' as it is related to the cloud," she stated.
The foundation also released a call for proposals, asking that submissions be made by June 1. While there were a couple of seemingly high-profile absences from the announcement -- both Canonical and VMware are nowhere to be found on the official statement -- Linux Foundation communications director Jennifer Cloer says the organization is in talks with both companies and that both are expected to participate in CloudOpen.
The announcement comes at a crucial time for VMware and Canonical, as the latter firm is planning to make waves of its own with the official release of Ubuntu 12.04 later this week and the former battles an increasingly clouded public perception in the open-source sector. The foundation has confirmed that Canonical will be a founding sponsor of CloudOpen



-Source (Network World)



SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

LibreOffice Addresses Multiple Heap-based Buffer Overflow Vulnerability (CVE-2012-2665)


LibreOffice Addresses Multiple Heap-based Buffer Overflow Vulnerability (CVE-2012-2665)

Just a few weeks after releasing the LibreOffice 3.5.5, The Document Foundation has confirmed that security holes in earlier versions of the open source LibreOffice, that could be exploited to execute arbitrary code with the privileges of the active user. According to the security advisories of LibreOffice, dubbed CVE-2012-2665 - "Multiple heap-based buffer overflow flaws were found in the XML manifest encryption tag parsing code of LibreOffice. An attacker could create a specially-crafted file in the Open Document Format for Office Applications (ODF) format which when opened could cause arbitrary code execution." Users are recommended to upgrade to 3.5.5 or 3.6.0 to avoid this flaw.  Red Hat released updated OpenOffice.org and LibreOffice packages for both Red Hat Enterprise Linux version 5 and Red Hat Enterprise Linux version 6. Users are advised to upgrade to these updated packages, which contain backported patches to correct the issues, Red Hat said in three security advisories published on Tuesday. Linux vendor Novell released updated LibreOffice packages for SUSE Linux Enterprise Desktop 10 and a LibreOffice update is also available for Ubuntu 12.04 (Precise Pangolin)






SHARE OUR NEWS DIRECTLY ON SOCIAL NETWORKS:-

Related Posts Plugin for WordPress, Blogger...