<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>
	Comments on: LFCA: How to Improve Linux Network Security &#8211; Part 19	</title>
	<atom:link href="https://www.tecmint.com/linux-network-security/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.tecmint.com/linux-network-security/</link>
	<description>Tecmint - Linux Howtos, Tutorials, Guides, News, Tips and Tricks.</description>
	<lastBuildDate>Mon, 17 May 2021 14:49:34 +0000</lastBuildDate>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	
	<item>
		<title>
		By: dragonmouth		</title>
		<link>https://www.tecmint.com/linux-network-security/comment-page-1/#comment-1492153</link>

		<dc:creator><![CDATA[dragonmouth]]></dc:creator>
		<pubDate>Mon, 17 May 2021 14:49:34 +0000</pubDate>
		<guid isPermaLink="false">https://www.tecmint.com/?p=42496#comment-1492153</guid>

					<description><![CDATA[&quot;1. Software Vulnerabilities&quot;
Old software is bad because bad actors have had more time to find its vulnerabilities. Applying software patches will only plug up the vulnerabilities that the patch was specifically designed for.  They will not fix any yet unknown vulnerabilities.

It is a fallacy to assume that &#039;new and improved software is any more secure than the &#039;old, tried and true software.  While upgrading the applications running on a system may introduce new features, it will also introduce new and undiscovered vulnerabilities.  One - because it is inevitable that the programming process will introduce vulnerabilities, and Two - because, in a commercial environment, the main objective is to get the application out to the market as soon as possible, resulting in a foreshortened quality testing.  

Another reason for almost guaranteed new vulnerabilities is that even the largest software house does not have sufficient enough staff to conduct thorough testing.  At best, they may have a thousand testers while, out in the wild, there are millions of users.  Millions of users can find application problems much faster than ANY Q/A staff.

Of course, bad actors will constantly be rooting through the application source, determined to find as many vulnerabilities as they can.

In none of the preceding articles in this series was performing a security audit mentioned as a method of mitigating security attacks.  An application such as Lynis will examine a Linux system, be it a server or an individual host, and list possible points of attack.]]></description>
			<content:encoded><![CDATA[<p>&#8220;1. Software Vulnerabilities&#8221;<br />
Old software is bad because bad actors have had more time to find its vulnerabilities. Applying software patches will only plug up the vulnerabilities that the patch was specifically designed for.  They will not fix any yet unknown vulnerabilities.</p>
<p>It is a fallacy to assume that &#8216;new and improved software is any more secure than the &#8216;old, tried and true software.  While upgrading the applications running on a system may introduce new features, it will also introduce new and undiscovered vulnerabilities.  One &#8211; because it is inevitable that the programming process will introduce vulnerabilities, and Two &#8211; because, in a commercial environment, the main objective is to get the application out to the market as soon as possible, resulting in a foreshortened quality testing.  </p>
<p>Another reason for almost guaranteed new vulnerabilities is that even the largest software house does not have sufficient enough staff to conduct thorough testing.  At best, they may have a thousand testers while, out in the wild, there are millions of users.  Millions of users can find application problems much faster than ANY Q/A staff.</p>
<p>Of course, bad actors will constantly be rooting through the application source, determined to find as many vulnerabilities as they can.</p>
<p>In none of the preceding articles in this series was performing a security audit mentioned as a method of mitigating security attacks.  An application such as Lynis will examine a Linux system, be it a server or an individual host, and list possible points of attack.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Jalal		</title>
		<link>https://www.tecmint.com/linux-network-security/comment-page-1/#comment-1492135</link>

		<dc:creator><![CDATA[Jalal]]></dc:creator>
		<pubDate>Mon, 17 May 2021 13:19:01 +0000</pubDate>
		<guid isPermaLink="false">https://www.tecmint.com/?p=42496#comment-1492135</guid>

					<description><![CDATA[Hi,
Thanks a lot]]></description>
			<content:encoded><![CDATA[<p>Hi,<br />
Thanks a lot</p>
]]></content:encoded>
		
			</item>
	</channel>
</rss>
