• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

Computer Engineering & Science

Previous Articles     Next Articles

Kernel privilege escalation attacks on Linux

ZUO Yudan,DING Yan,WEI Lifeng   

  1. (College of Computer,National University of Defense Technology,Changsha 410073,China)  
  • Received:2015-09-07 Revised:2015-11-27 Online:2016-11-25 Published:2016-11-25

Abstract:

Privilege escalation attack is an important attack against the Linux. According to the types of exploited vulnerabilities, privilege escalation attacks can be classified into two categories: applicationlevel privilege escalation attack and kernel privilege escalation attack. Basic applicationlevel privilege escalation attacks can be prevented by the existing defense techniques, however, they cannot prevent kernel privilege escalation attacks fully. Kernel privilege escalation attacks are still one of the serious threats. We analyze the basic principles for exploiting kernel vulnerabilities and privilege escalation methods for kernel privilege escalation attacks, as well as some typical defense techniques. We analyze and verify the defense effects of the SELinux against kernel privilege escalation attacks, and point out future feasible research directions.

Key words: privilege escalation, kernel vulnerability, vulnerability exploitation, system security