Tag Archive for: Funds

Google funds Linux project to fix vulnerabilities and enhance security


Linux

Source: Computerworld

Google, the search engine company and the Android-maker, has recently announced to be backing a project by Linux to make the Operating System harder to hack by fixing its vulnerabilities and enhancing its security. Google mentioned in a report on Thursday that it is funding a project to increase the security of Linux by re-writing the core parts “Kernel” of the Linux Operating System in Rust programming language which is basically a modernization effort to make it harder for the hackers to attack Linux-based devices.

Linux has been around for quite a while, and the Operating System is written on C Programming language which was developed back in 1972, and now with the modern advancements of the 21st century where the hackers have got all the skills and tools required for major hacking, anything written in C programming language can easily be entered into. We can say that time has outgrown Linux’s security, and now, Google will fund the project to modernise Linux and increase its overall security.

Making changes in the Kernel of Linux by replacing the written software with Rust programming language will mark a significant cultural shift in the open-source software project which is a substantial foundation to Google’s Android Operating System and Chrome OS along with other resources on the internet, as mentioned in a report by CNET.

Rust is a programming language developed by Mozilla, the developer of Firefox. The programming language is now run independently by Rust Foundation and it is known to be the most popular programming language for over five years. Rust makes it safer for software developers to write in memory as it continuously checks for hiding malicious problems or viruses in and around the memory area. According to a survey, Rust is considered to be the best alternative to decades-old C and C++ programming languages.

Linux and Google have pitched in Miguel Ojeda, whose written parts of the software used in the Large Hadron Collider particle accelerator, for writing the software for Linux in Rust programming language. As sources suggest, Google is funding the contract and the project which is being extended through the Internet Security…

Source…

Upstox alerts users of data breach; says funds, securities remain safe



Retail broking firm Upstox has alerted customers of a security breach that included contact data and KYC details of customers, but assured users that their funds and securities remain safe.


The development comes close on the heels of reports of data breaches at organisations like MobiKwik, Facebook and LinkedIn.



“On receipt of e-mails claiming unauthorised access into our database, we have appointed a leading international cyber-security firm to investigate possibilities of breach of some KYC data stored in third-party data warehouse systems.


“This morning, hackers put up a sample of our data on the dark web,” a company spokesperson said in an e-mailed statement.


The spokesperson added that as a proactive measure, the company has initiated multiple security enhancements, particularly at the third-party warehouses, real-time 24×7 monitoring and additional ring-fencing of its network.


“As a matter of abundant caution, we have also initiated a secure password reset via OTP for all Upstox users. Upstox takes customer security extremely seriously.


“Funds and securities of all Upstox customers are protected and remain safe. We have also duly reported this incident to the relevant authorities,” the spokesperson said.


The spokesperson further said that at this point, “we don’t know with certainty the number of customers whose data has been exposed”.


Upstox, which is backed by investors like Tiger Global and Ratan Tata, has over three million users.


On the company website, Upstox co-founder and CEO Ravi Kumar said funds and securities of customers are protected and remain safe.


“Funds can only be moved to your linked bank accounts and your securities are held with the relevant depositories.


“As a matter of abundant caution, we have also initiated a secure password reset via OTP. Through this time, we have also strongly fortified our systems to the highest standards,” he said.


He added that the company has restricted access to the impacted database, and added multiple security enhancements at all third-party data-warehouses.


The company has also ramped up its bug bounty programme to…

Source…

Cryptocurrency exchange Eterbase hacked, $5.4 million worth of funds stolen

European cryptocurrency exchange platform Eterbase has announced that it has suffered a security breach which saw hackers access its network and steal funds worth US $ 5.4 million. Read more in my article on the Tripwire State of Security blog.
Graham Cluley