首页    期刊浏览 2024年11月08日 星期五
登录注册

文章基本信息

  • 标题:Containing a Confused Deputy on x86: A Survey of Privilege Escalation Mitigation Techniques
  • 本地全文:下载
  • 作者:Scott Brookes ; Stephen Taylor
  • 期刊名称:International Journal of Advanced Computer Science and Applications(IJACSA)
  • 印刷版ISSN:2158-107X
  • 电子版ISSN:2156-5570
  • 出版年度:2016
  • 卷号:7
  • 期号:4
  • DOI:10.14569/IJACSA.2016.070463
  • 出版社:Science and Information Society (SAI)
  • 摘要:The weak separation between user- and kernelspace in modern operating systems facilitates several forms of privilege escalation. This paper provides a survey of protection techniques, both cutting-edge and time-tested, used to prevent common privilege escalation attacks. The techniques are compared against each other in terms of their effectiveness, their performance impact, the complexity of their implementation, and their impact on diversification techniques such as ASLR. Overall the literature provides a litany of disjoint techniques, each of which trades some performance cost for effectiveness against a particular isolated threat. No single technique was found to effectively mitigate all known and potential attack vectors with reasonable performance cost overhead.
  • 关键词:thesai; IJACSA; thesai.org; journal; IJACSA papers; Protection & Security; Virtualization; Kernel ROP; ret2usr; Kernel Code Implant; rootkits; Operating Systems; Privilege Escalation
国家哲学社会科学文献中心版权所有