KernelCare Blog

SACK Panic & Slowness: KernelCare patches are on the way

Jun 20, 2019 11:12:24 AM / by alexandra posted in KernelCare Blog

2 Comments

Netflix has a new hit on its hands. They’ve discovered new Linux kernel vulnerabilities and describe how a properly formed TCP network packet can cause the kernel to panic or slow down. There are three kinds. Two affect Linux kernels. (The other is for FreeBSD so won’t be described further.) All are dangerous because they can be executed remotely.

Read More

How to Secure Linux by Patching in Real-Time

Jun 18, 2019 7:34:00 PM / by KernelCare Team posted in KernelCare Blog

0 Comments

How to Secure Linux by Patching in Real-Time

If anyone tells you that they know how to secure linux, but they fail to mention live patching – don’t listen to them. Keeping servers automatically up to date is key to keeping them safe. In the complex security question of how to secure Linux, patching live, in real-time, is the missing link.

Read More

Why Waiting For Your Next Linux Reboot is Making You Insecure

Jun 13, 2019 9:13:00 PM / by KernelCare Team posted in KernelCare Blog

0 Comments

Why Waiting For Your Next Linux Reboot is Making You Insecure

You've just installed a kernel update, and now you need to carry out a Linux reboot. Except guess what? You don’t. Word is only just starting to get out, but times have changed, and rebooting is a thing of the past. This is a very positive development: because rebooting to patch is a hassle, companies frequently delay it for as long as they can – with damaging consequences.

Read More

5 Bad Reasons to Update Your Linux Kernel

Jun 5, 2019 8:29:32 PM / by Igor Seletskiy posted in KernelCare Blog

0 Comments

A Linux kernel update is not to be taken lightly—change means risk. Whatever reasons you think you might have, there is really only one that matters. Igor Seletskiy, CEO of CloudLinux, tells you what it is in this blog post.

Read More

Avoid Death, Taxes and Linux Server Reboots – Linux Kernel Updates, 3 Different Ways

Jun 5, 2019 8:27:49 PM / by Igor Seletskiy posted in KernelCare Blog

0 Comments

Linux kernel updates are a fact of life–as dull as taxes and only slightly less inconvenient than death. Newly discovered security vulnerabilities in the Linux kernel seem to appear with monotonous regularity. In most but not all cases, the patches needed to fix them follow swiftly after. There is work involved in installing the latest Linux kernel security patches, and danger if you delay–leave it too long and threat actors might take advantage of the period of vulnerability.

Read More

How I Validated KernelCare for VMware Cloud on AWS

May 29, 2019 5:23:43 PM / by Vitaly Daragan posted in KernelCare Blog

0 Comments


VMware has been a part of my working life for some time now. As a former Linux System Administrator, I've used it many times in different places. It's been one of my favorite ways to try out new operating systems (read: distro hopping) without having to buy more hardware. 

Read More

Webinar, Wed, July 10: "You Need Live Patching to Achieve SOC 2 ® Compliance"

May 28, 2019 3:04:54 PM / by alexandra posted in KernelCare Blog, AWS_KernelCare

0 Comments

Our KernelCare webinars on live patching technology and applications are growing in popularity.

So, we’re happy to tell you about another. As before, this one is in partnership with a technical architect from Amazon Web Services. And we’ve invited a prominent and established KernelCare customer from the insurance sector, Efinity.

Read More

KernelCare for VMware Cloud on AWS

May 28, 2019 10:32:02 AM / by alexandra posted in KernelCare Blog

0 Comments

KernelCare, the multiplatform Linux kernel live patching solution, now validated by VMware for customers of VMware Cloud on Amazon Web Services (AWS).

Read More

Critical MDS affects almost all Intel CPUs

May 15, 2019 4:53:04 PM / by alexandra posted in Articles, KernelCare Blog, Front Page

36 Comments


Contents
1. About the Zombieload/MDS Vulnerability
2. Patch Release Schedule

About the Zombieload/MDS Vulnerability

Vulnerabilities are becoming like celebrities, with freaky names and their own websites.

The latest ones to hit the scene are Zombieload, RIDL and Fallout, also known as Microarchitectural Data Sampling, (MDS for short), discovered by Intel and researched by academic departments at security-focused institutions around the world. These vulnerabilities are in the same vein as Spectre and Meltdown, being design flaws that reveal data. Zombieload is particularly worrying because it affects all Intel Core and Xeon CPUs manufactured since 2011.

Read More

Webinar, Thu, May 9: "The Importance of Live Patching for Kernel Vulnerabilities"

May 2, 2019 6:02:44 PM / by alexandra posted in KernelCare Blog

0 Comments

webinar-cover1

Organizations use cloud services like AWS to be more agile and more profitable. This doesn’t stop them spending millions of dollars on cybersecurity, investing in network defense and end-point protection, hiring consultants, and purchasing threat intelligence reports.

But companies still get hacked, and still suffer data breaches and server compromises, often traceable to out-of-date software, either at the application level, or in the OS itself.

Read More