首页> 外文期刊>SC magazine >Debater» Removing administrator rights means that advanced malware is no longer a problem.
【24h】

Debater» Removing administrator rights means that advanced malware is no longer a problem.

机译:Debater»删除管理员权限意味着高级恶意软件不再是问题。

获取原文
获取原文并翻译 | 示例
           

摘要

One of the most effective steps that can be taken to mitigate malware threats is to implement a least-privilege approach. The most dangerous and persistent threats often look to bury themselves deep inside the OS, using rootkits and other kernel-level techniques. It can then cloak itself from security solutions,making detection and removal problematic. In order for malware to infect the kernel, it must run in a privileged context or gain access to a privileged account, such as a local administrator. If a user logs on with an administrator account, malware can then gain access to a privileged context with ease, whereas if admin rights are removed, then it becomes much more difficult. It's no surprise that most of Microsoft's critical vulnerabilities state that users who logon to systems with fewer privileges will be less impacted.
机译:减轻恶意软件威胁可采取的最有效步骤之一是实施最低特权方法。最危险和持久的威胁通常看起来是使用rootkit和其他内核级技术将其隐藏在操作系统内部。然后,它可以使自己脱离安全解决方案,从而使检测和清除成为问题。为了使恶意软件感染内核,它必须在特权上下文中运行或获得对特权帐户(例如本地管理员)的访问权限。如果用户使用管理员帐户登录,则恶意软件即可轻松访问特权上下文,而如果删除了管理员权限,则变得更加困难。毫不奇怪,Microsoft的大多数严重漏洞都指出,以较少特权登录系统的用户受到的影响较小。

著录项

  • 来源
    《SC magazine》 |2013年第5期|13-13|共1页
  • 作者

  • 作者单位
  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号