首页> 外文会议>International workshop on security >Hooking Graceful Moments: A Security Analysis of Sudo Session Handling
【24h】

Hooking Graceful Moments: A Security Analysis of Sudo Session Handling

机译:勾勒优雅时刻:Sudo会话处理的安全性分析

获取原文

摘要

Sudo is a widely used utility program to temporarily provide the privileges of other users when executing shell commands in many UNIX and Linux systems. In conventional usage, a Sudo user who fulfills password authentication is eligible to execute a series of shell commands with system administrative privilege for a while. As Sudo enables privilege switchover, it has been the attractive target of attacks for privilege escalation in nature. Although Sudo source code have been reviewed by security researchers and patched accordingly, in this paper, we show that Sudo is still vulnerable to session hijacking attacks by which an attacker is able to achieve privilege escalation. We explain how such attacks are possible by spotlighting the inherently flawed session handling of Sudo. We also describe two attack designs - shell proxy and ticket reuse attack -by revisiting some known attack strategies. Our experimental results show that the recent versions of Sudo, in combination with the underlying shell program, are affected to the attack designs.
机译:Sudo是一种广泛使用的实用程序,用于在许多UNIX和Linux系统中执行shell命令时临时提供其他用户的特权。在常规用法中,完成密码身份验证的Sudo用户有一段时间可以执行一系列具有系统管理特权的Shell命令。由于Sudo启用了特权切换,因此本质上,它已成为吸引特权升级攻击的有吸引力的目标。尽管安全研究人员已经审查了Sudo源代码并对其进行了修补,但在本文中,我们显示Sudo仍然容易受到会话劫持攻击的攻击,攻击者可以通过会话劫持攻击来实现特权提升。我们通过重点介绍Sudo固有的有缺陷的会话处理来说明如何进行此类攻击。通过重新研究一些已知的攻击策略,我们还描述了两种攻击设计-Shell代理和票证重用攻击。我们的实验结果表明,Sudo的最新版本与底层Shell程序结合使用,会对攻击设计产生影响。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号