Web-based system configuration tool for Unix-like systems
POPULARITY
独立行政法人情報処理推進機構(IPA)および一般社団法人JPCERT コーディネーションセンター(JPCERT/CC)は7月9日、複数のWebmin製品における複数の脆弱性について「Japan Vulnerability Notes(JVN)」で発表した。
Zum ersten Mal diskutieren wir einen cURL-CVE, der für DoS genutzt werden kann. Debian und Ubuntu veröffentlichen neue Point-Releases: Ubuntu Unity wird eine offizielle Variante, während Debian die nicht enden wollende Diskussion über unfreie Firmware erneut entfacht. Zudem haben uns erste Details über Fedora 37, Ubuntu 22.10 und VirtualBox 7.0 erreicht. Microsoft begräbt unerwartet früh den Linux Teams-Client, während mit Webmin 2.0 ein längst tot geglaubtes Tool wieder in das Zentrum der Aufmerksamkeit rückt. Felix ist aus Mêlée Island zurück und führt uns mit einem Bildungsauftrag durch den #sedtember. Links zu dieser Folge: FeedbackYouTube-Channel "Dmitry Lambert" (Head of Customer Support bei Zabbix): https://www.youtube.com/channel/UCUQSCqrwiCjwQZQGznTkvrQZabbix Docker-Image: https://github.com/zabbix/zabbix-dockerFOCUS ON: DevOps "E28 - Der Linux-Jahresrückblick": https://ageofdevops.de/index.php/podcast/e28/TIL009 über Monitoring mit Michael Friedrich: https://tilpod.net/episode/til009-monitoring-nicht-nur-mit-prometheusTT164 Dynamic Island Brandenburg, Ultra Edition: https://techniktechnik.de/?podcast=tt164-dynamic-island-brandenburg-ultra-editionCVE-2022-35252https://curl.se/docs/CVE-2022-35252.htmlhttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-35252https://www.suse.com/security/cve/CVE-2022-35252.htmlhttps://access.redhat.com/security/cve/cve-2022-35252https://hackerone.com/reports/1613943https://github.com/curl/curl/pull/9048/commits/d7bcbc7d8d4b6d972d3da12d54819169a19c287bhttps://curl.se/docs/CVE-2022-32205.htmlVirtualBox 7.0.0 Beta 1Downloads: https://download.virtualbox.org/virtualbox/7.0.0_BETA1/Forum-Thread zum Apple Silicon-Thread: https://forums.virtualbox.org/viewtopic.php?f=8&t=106929Ubuntu 22.04.5 Release Notes: https://wiki.ubuntu.com/FocalFossa/ReleaseNotes/ChangeSummary/20.04.5Ubuntu Unity wird offizielle Variante: https://lists.ubuntu.com/archives/technical-board/2022-September/002670.htmlUbuntu 22.10Ausblick auf Ubuntu 22.10: https://linuxnews.de/2022/08/ausblick-auf-ubuntu-22-10-kinetic-kudu/Details zu IWD: https://linuxnews.de/2022/06/ubuntu-22-10-iwd-statt-wpa/Fedora 37 BetaPhoronix-Artikel: https://www.phoronix.com/news/Fedora-37-Beta-Next-WeekLinuxNews: https://linuxnews.de/2022/09/fedora-linux-37-beta-verfuegbar/USB Type C-Probleme unter Linux 5.19.9: https://www.reddit.com/r/Fedora/comments/xi7zct/usb_typec_not_working_properly_after_kernel/GNOME 43 Release Notes: https://release.gnome.org/43/Microsoft stellt Teams Linux-Client ein:News-Post: https://www.omglinux.com/the-official-microsoft-teams-app-for-linux-is-being-retired/Reddit-Thread: https://www.reddit.com/r/linux/comments/x3c1sk/mircosoft_teams_desktop_client_on_linux_is_being/Rish Tandon zu technischen Details: https://twitter.com/tandonrish/status/1408085784016539653Apple AGX offensichtlich stark an PowerVR angelehntE03: https://ageofdevops.de/index.php/podcast/fol_newsupdate0322/News-Artikel: https://www.phoronix.com/news/Mesa-AGX-More-PVR-ReferenceOpenGL 2.1-Support: https://www.phoronix.com/news/Asahi-Linux-GL-2.1-EOY2022Webmin 2.0 erschienen: https://www.phoronix.com/news/Webmin-2.0-ReleasedDebian und unfreie Firmware:LinuxNews-Artikel: https://linuxnews.de/2022/09/debians-wahl-zwischen-freiheit-und-benutzbarkeit/Inoffizielle Abbilder mit unfreier Firmware: https://cdimage.debian.org/images/unofficial/non-free/images-including-firmware/"I don't care about cookies" von Avast übernommen: https://www.i-dont-care-about-cookies.eu/whats-new/acquisition/https://gnulinux.ch/idcac-alternativenHome Assistant wird 9 Jahre altErster Commit: https://github.com/home-assistant/core/commit/d55e4d53cccc9123d03f45c53441e7cbfc58e515Release Notes 2022.9: https://www.home-assistant.io/blog/2022/09/07/release-20229/ESPHome Bluetooth Proxy: https://esphome.io/components/bluetooth_proxy.htmlKur
Zum ersten Mal diskutieren wir einen cURL-CVE, der für DoS genutzt werden kann. Debian und Ubuntu veröffentlichen neue Point-Releases: Ubuntu Unity wird eine offizielle Variante, während Debian die nicht enden wollende Diskussion über unfreie Firmware erneut entfacht. Zudem haben uns erste Details über Fedora 37, Ubuntu 22.10 und VirtualBox 7.0 erreicht. Microsoft begräbt unerwartet früh den Linux Teams-Client, während mit Webmin 2.0 ein längst tot geglaubtes Tool wieder in das Zentrum der Aufmerksamkeit rückt. Felix ist aus Mêlée Island zurück und führt uns mit einem Bildungsauftrag durch den #sedtember. Links zu dieser Folge: FeedbackYouTube-Channel "Dmitry Lambert" (Head of Customer Support bei Zabbix): https://www.youtube.com/channel/UCUQSCqrwiCjwQZQGznTkvrQZabbix Docker-Image: https://github.com/zabbix/zabbix-dockerFOCUS ON: DevOps "E28 - Der Linux-Jahresrückblick": https://ageofdevops.de/index.php/podcast/e28/TIL009 über Monitoring mit Michael Friedrich: https://tilpod.net/episode/til009-monitoring-nicht-nur-mit-prometheusTT164 Dynamic Island Brandenburg, Ultra Edition: https://techniktechnik.de/?podcast=tt164-dynamic-island-brandenburg-ultra-editionCVE-2022-35252https://curl.se/docs/CVE-2022-35252.htmlhttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-35252https://www.suse.com/security/cve/CVE-2022-35252.htmlhttps://access.redhat.com/security/cve/cve-2022-35252https://hackerone.com/reports/1613943https://github.com/curl/curl/pull/9048/commits/d7bcbc7d8d4b6d972d3da12d54819169a19c287bhttps://curl.se/docs/CVE-2022-32205.htmlVirtualBox 7.0.0 Beta 1Downloads: https://download.virtualbox.org/virtualbox/7.0.0_BETA1/Forum-Thread zum Apple Silicon-Thread: https://forums.virtualbox.org/viewtopic.php?f=8&t=106929Ubuntu 22.04.5 Release Notes: https://wiki.ubuntu.com/FocalFossa/ReleaseNotes/ChangeSummary/20.04.5Ubuntu Unity wird offizielle Variante: https://lists.ubuntu.com/archives/technical-board/2022-September/002670.htmlUbuntu 22.10Ausblick auf Ubuntu 22.10: https://linuxnews.de/2022/08/ausblick-auf-ubuntu-22-10-kinetic-kudu/Details zu IWD: https://linuxnews.de/2022/06/ubuntu-22-10-iwd-statt-wpa/Fedora 37 BetaPhoronix-Artikel: https://www.phoronix.com/news/Fedora-37-Beta-Next-WeekLinuxNews: https://linuxnews.de/2022/09/fedora-linux-37-beta-verfuegbar/USB Type C-Probleme unter Linux 5.19.9: https://www.reddit.com/r/Fedora/comments/xi7zct/usb_typec_not_working_properly_after_kernel/GNOME 43 Release Notes: https://release.gnome.org/43/Microsoft stellt Teams Linux-Client ein:News-Post: https://www.omglinux.com/the-official-microsoft-teams-app-for-linux-is-being-retired/Reddit-Thread: https://www.reddit.com/r/linux/comments/x3c1sk/mircosoft_teams_desktop_client_on_linux_is_being/Rish Tandon zu technischen Details: https://twitter.com/tandonrish/status/1408085784016539653Apple AGX offensichtlich stark an PowerVR angelehntE03: https://ageofdevops.de/index.php/podcast/fol_newsupdate0322/News-Artikel: https://www.phoronix.com/news/Mesa-AGX-More-PVR-ReferenceOpenGL 2.1-Support: https://www.phoronix.com/news/Asahi-Linux-GL-2.1-EOY2022Webmin 2.0 erschienen: https://www.phoronix.com/news/Webmin-2.0-ReleasedDebian und unfreie Firmware:LinuxNews-Artikel: https://linuxnews.de/2022/09/debians-wahl-zwischen-freiheit-und-benutzbarkeit/Inoffizielle Abbilder mit unfreier Firmware: https://cdimage.debian.org/images/unofficial/non-free/images-including-firmware/"I don't care about cookies" von Avast übernommen: https://www.i-dont-care-about-cookies.eu/whats-new/acquisition/https://gnulinux.ch/idcac-alternativenHome Assistant wird 9 Jahre altErster Commit: https://github.com/home-assistant/core/commit/d55e4d53cccc9123d03f45c53441e7cbfc58e515Release Notes 2022.9: https://www.home-assistant.io/blog/2022/09/07/release-20229/ESPHome Bluetooth Proxy: https://esphome.io/components/bluetooth_proxy.htmlKurznewsRHEL10 ohne GTK2-Support: https://www.phoronix.com/news/RHEL-10-No-GTK2Kielux: https://tube.tchncs.de/c/kieler_open_source_und_linux_tage/videosLinux Foundation übernimmt pytorch: https://www.golem.de/news/machine-learning-linux-foundation-uebernimmt-pytorch-2209-168245.htmlsystemd hält Einzug in WSL: https://linuxnews.de/2022/09/microsoft-integriert-systemd-in-wsl/TooltippsESPHome: https://esphome.io/Glab: https://glab.readthedocs.io/en/latest/Visualising software architecture with the C4 model: https://www.youtube.com/watch?v=x2-rSnhpw0gMermaid: https://mermaid-js.github.io/mermaid/
2022 年 7 月に、サーバ管理ツールである Webmin に、遠隔からの管理者権限での任意のコードが実行可能となる脆弱性が公開されています。
Details on two new efforts in the Linux kernel, the Pi-like RISC-V board that just hit its funding goal, and a significant milestone for Asahi GPU driver development.
Details on two new efforts in the Linux kernel, the Pi-like RISC-V board that just hit its funding goal, and a significant milestone for Asahi GPU driver development.
Want to try using Webmin for something in your Smarthome Looking for a DHCP server that is more flexible than what you are using? Stay tuned and I will show ... The post How to setup a DHCP Server using Webmin and Rpi first appeared on TechBytes With Ron Nutter.
Need to make changes to your RPi and don’t remember the cli commands? Want to gain linux skills to help get that next job? Stay tuned and I will show ... The post How to use Webmin to increase functionality of your Raspberry Pi first appeared on TechBytes With Ron Nutter.
La entrada Webmin panel para gestionar cualquier Linux se publicó primero en Blog Xavi74.
Wherein all "screen time" is not created equal, and Chris hates Webmin.
This week Greg , Nick A, Mike, and Thomas cover a lot of ground; must talk about all the things. This week we talk about: MikroTik CHR perf issues with AMD Epyc 30+ Cisco unauthenticated RCEs for various Cisco equipt. Cisco IOS-XE critical (10/10 CVSS) auth vuln Kubernetes DoS vulns Webmin unauthenticated RCE vuln(More)…
In our Wanderings, Leo talks snapd and spicing up the terminal, Tony Hughes dives into EndeavourOS (Arch!) and Mint, Josh has been playing around with drones, Joe gets some help with Borderlands and eyes the Note 10, and Tony Watts installs Mint and changes carriers. Then, in our news, OSDisc closes shop, Google Deserts Desserts, Red Hat issues patches, Scratch 3 is now available for the Pi, and more. In our security update, we talk Webmin flaws. Download
This week Joe and Alex discuss a recently disclosed backdoor in Webmin, plus we cover security updates from the past week, including for Nova, KDE, LibreOffice, Docker, CUPS and more.
Protestors in Hong Kong are physically attacking and destroying facial recognition cameras. More Palo Alto says 7 out of 10 new domain registrations (NDRs) are either malicious or not safe for work, and they encourage companies to block them. More Lt. Gen. Fogarty is fighting to change the name of Army Cyber Command to Army Information Warfare Command, and to give the group a much larger scope in its mission. More We continue to see attacks against open source supply chains, in packages like NPM, RubyGems, Webmin, and many others. It's about to become imperative for people to understand—and to be able to validate—the entire chain of trust that a given application sits upon before they use it. There have been many companies in this space in the past, but I expect to see them (and new players) get a lot more attention soon. More
8/23/19 Firmware Security; Webmin Backdoor; HTTP/2 Flaw; Internet Weather
A daily look at the relevant information security news from overnight.Episode 135 - 20 August 2019NordVPN trojan - https://www.bleepingcomputer.com/news/security/hackers-use-fake-nordvpn-website-to-deliver-banking-trojan/Webmin backdoor - https://www.zdnet.com/article/backdoor-found-in-webmin-a-popular-web-based-utility-for-managing-unix-servers/Adwind hitting utilities - https://www.bleepingcomputer.com/news/security/adwind-remote-access-trojan-hits-utilities-sector/Segmented routers leak - https://www.bleepingcomputer.com/news/security/router-network-isolation-broken-by-covert-data-exfiltration/Ransomware hits Texas - https://threatpost.com/coordinated-ransomware-attack-hits-23-texas-government-agencies/147457/
Leider gab es einige Wochen keine neuen Episoden. Grund war unter anderem ein Problem beim Serverupdate. Seit Anfang Mai nutze ich Webmin statt Plesk als graphische Adminoberfläche für den Server. In dieser Ausgabe: Neues von den Tech- und Entwicklerkonferenzen bei Google und Facebook.
Who is the BSD Daemon?Daemons are process that run in the background attending to various tasks without human intervention.some call it "Beastie" or "Chuck", in fact the proper name is just "BSD Daemon"There is no satanic connection.Earliest images were created by John Lasseter.Currently, the copyright of the BSD Daemon is held by Marshall Kirk McKusickInterview with Webmin Author Jamie Cameron.Webmin is a web-based interface for system administration for Unix.Written in Perl, and is BSD licensed.Get a copy of the book "Managing Linux Systems with Webmin" by Jamie Cameron, published by Prentice Hall.I can't seem get the word "Linux" right today.
In this episode we discuss a Javascript x86 emulator. This VM has a Linux kernel which is fully bootable! You have shell access and can run normal Linux commands. It even has a compiler!! (TCC, not GCC.) This is epic and deserves attention! - Making a DNS server from scratch! Also using Webmin to control it [...]
In this special mini-episode: listener feedback on VMware for the Mac and Qemu, windows networking, Webmin, and changing the GRUB boot order; two Listener Tips, one on man pages and the other on the Qunu live help.