home hardware prices news articles forums photos user reviews
Go Back   Tech Support Forums - TechIMO.com > PC Hardware and Tech > Linux and Unix
Ask a Tech Support Question (free)!

Linux Security Myth Busting

Reply
Get bargains at  »  Dealighted.com
 
Thread Tools Search this Thread
Currently Active Users: 1698
Discussions: 200,509, Posts: 2,374,410, Members: 245,832
Old May 21st, 2008, 02:54 PM   Digg it!   #1 (permalink)
Ultimate Member
 
CMonster's Avatar
 
Join Date: Oct 2001
Location: Sunny, smogy Southern California
Posts: 6,001
Linux Security Myth Busting

A short word on Linux security:

"Linux is secure in it's obscurity;"

This is a common misconception. Linux is not obscure; being based on the UNIX model that has been around since before DOS was a twinkle in Bill Gates eyes, the structure and functions of UNIX are hardly unknown. The infamous "Internet Worm" of 1986 was the first widely publicized threat to networked computers --they ran UNIX and the exploit took advantage of the "at" command. Since then, continuing to the present day most network servers, mission critical applications, and super computers run UNIX (many Linux).

Linux is more secure than windows for several reasons, here are a few:

First of all, at its inception Linux was designed to be a desktop version of UNIX, so it progressed from a true NOS (network operating system) to a desktop OS, carrying with it a legacy network security model of server/client-user with limited permissions. Unlike windows which progressed from a single-user desktop OS to a NOS, having to add layers of security along the way.

Secondly, Linux, being open source, might seem to invite hacks but the opposite is equally true --as fast as a hack is discovered by the community a security fix/patch is usually made available.

Finally, while I admit that Linux does require the user to be a bit more educated about system administration (there is a learning curve), we all understand that an educated user makes for better security in any OS, rather than relying on mouse clicks and eye-candy that pop up warning of a threat.

Last edited by CMonster : May 21st, 2008 at 02:57 PM.
CMonster is offline   Reply With Quote
Old May 21st, 2008, 04:25 PM     #2 (permalink)
SoMuchAnime-SoLittleTime
 
EXreaction's Avatar
 
Join Date: Aug 2003
Location: Plymouth, WI
Posts: 14,972
Blog Entries: 1
Send a message via MSN to EXreaction
An OS is only as secure as it's weakest application.

I've not heard of an exploit for the Windows OS or Unix OS in a very long time, most or the hacks are all targeted at 3rd party software.
__________________
My photography: Flickr

Lithium Studios - phpBB3, PHP, and Web Development
EXreaction is offline   Reply With Quote
Old May 24th, 2008, 11:08 PM     #3 (permalink)
Ultimate Member
 
SeanC's Avatar
 
Join Date: Oct 2001
Location: Toronto Canada
Posts: 4,695
Pretty much. Remember there was the recent Windows, Mac, Linux hacking contest? None of them could be hacked through just the OS itself. It was the 3rd party apps which nailed Windows (Acrobat or Flash video or something Adobe anyway, if I recall). If Linux/Unix apps are direct ports of source code then they could very well have the same vulnerabilities, but with the default user account not having full administrative/root access to the system, the damage is more limited. Windows can do that too, except for the everyday apps (like Microsoft's own Office - older versions anyway, don't know about 2007) that required the user to be an admin to even use some of the programs.
__________________
AMD Phenom Q9500 Quad-Core 2.2ghz / Asus M3A78-EMH HDMI / 4GB PC667 RAM / 320GB SATA II
SeanC is offline   Reply With Quote
Old May 25th, 2008, 12:37 AM     #4 (permalink)
ATI 4850 FTW!
 
#43 fan's Avatar
 
Join Date: Mar 2005
Location: Midwest
Posts: 5,376
Send a message via AIM to #43 fan
The hackers may have been able to get through using just the OS, but it would've taken quite a bit of time.
__________________
http://www.ubuntu.com
#43 fan is offline   Reply With Quote
Old May 25th, 2008, 02:27 AM     #5 (permalink)
Ultimate Member
 
cunokyle's Avatar
 
Join Date: Sep 2002
Location: Iowa
Posts: 3,334
Send a message via AIM to cunokyle
Saying Linux or UNIX are more secure than Windows is not true. As stated above, the third party software is what is responsible for the security holes in almost every case.
cunokyle is offline   Reply With Quote
Old May 26th, 2008, 03:06 AM     #6 (permalink)
Ultimate Member
 
CMonster's Avatar
 
Join Date: Oct 2001
Location: Sunny, smogy Southern California
Posts: 6,001
3rd party applications with code open to inspection allows security flaws to be more readily identified and patched. 3rd party applications are generally being run with very limited permissions on the UNIX model -I can't say that has always been the case with other platforms.

I may also be guilty of taking the suite of applications collectively and calling them an OS, as many users commonly do, leading me to suppose that just about everything other than the base OS kernel could be called a 3rd party application. At what point is the cut off --compiled drivers are OS but module drivers are 3rd party?

Anyway, my basic point was that security in obscurity is a myth - Linux-os-suite-of-applications are hardly obscure to hackers, but perhaps a little more abstruse to the script kiddies.
CMonster is offline   Reply With Quote
Old May 26th, 2008, 12:09 PM     #7 (permalink)
Ultimate Member
 
SeanC's Avatar
 
Join Date: Oct 2001
Location: Toronto Canada
Posts: 4,695
I agree that Linux is definitely not obscure anymore. But it's fairly safe from the "script kiddies". In general, you need someone that truly knows what they're doing to crack a Unix-based system.
SeanC is offline   Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads
Thread Thread Starter Forum Replies Last Post
Linux Security Project CMonster Linux and Unix 7 December 24th, 2005 09:22 PM
virus myth sensi Security and Privacy Issues 11 October 24th, 2005 07:47 AM
The BPL Myth Pexster IMO Community 11 March 5th, 2004 05:36 PM
busting some chops ironforge IMO Community 3 March 17th, 2002 11:53 PM
Linux kernel /zlib security vulnerability Germ Applications and Operating Systems 6 March 15th, 2002 07:50 AM


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Most Active Discussions
Is It Just Me? (1635)
FT HOOD attack: 7 killed 12 injured (67)
Review My Build (6)
HELP!!! What do you think of this s.. (16)
Looking for a graphic card that wil.. (30)
Assosiations (21496)
My 1st pc build (40)
PC Modern Warfare 2: it's much wors.. (12)
Aero in Vista (7)
core i7 extreme 975, nvidia 9400gt (9)
How to Ship a PC (16)
Building my first computer (13)
[F@H SPAM 11/1/09]New month . . . n.. (33)
slaving laptop drive (7)
Recent Discussions
windows 7 retail and rtm (3)
boot from CD-ROM in chipset via P4M80.. (1)
Windows Experience Index is screwed u.. (3)
Review My Build (6)
FAT32 to NTFS file system in Win2kpro (4)
Internet very slow since updating AVG.. (8)
Motherboards and my curse... (25)
HELP!!! What do you think of this sys.. (16)
New Processor, Monitor will not turn .. (2)
2009 Build (4)
My 1st pc build (40)
Freezing During Music/Movies (1)
ext. sound card laptop to stereo syst.. (2)
Remote Desktop via SSH and error mess.. (2)
Help and Support disappeared from my .. (0)
[F@H SPAM 11/1/09]New month . . . new.. (33)
Basic applications needed for "r.. (1)
core i7 extreme 975, nvidia 9400gt (9)
hard drive problem (2)
Win7 TrustedInstaller Permissions (2)
Speed up Win 7 boot time a bit (1)
Hard Drive test program (2)
wireless westell versalink model 327w (1)
New build 10 second reboot cycle! Won.. (3)
New Linksys Routers (2)


All times are GMT -4. The time now is 07:49 AM.
TechIMO Copyright 2008 All Enthusiast, Inc.



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28