Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

Question 36 2.5 pts What is the main risk in allowing a regular user to run chown to change ownership of her file to any

image text in transcribed
Question 36 2.5 pts What is the main risk in allowing a regular user to run chown to change ownership of her file to any other user? She could leverage it to change ownership of the /etc/shadow Me and steal password hashes and salts. She could frame another user by making him the owner of a malicious program, She could fool the HIDS into thinking that her activity is that of another user She could create a SetUID root shell program and use it with full root access Question 37 2.5 pt Why does Role-Based Access Control make it easier to implement the principle of least privilege? Roles are assigned to users dynamically during a login session enabling more complete access checks. It dynamically removes privileges from users when they are not needed. It prevents accesses to roles with lower positions in the role hierarchy. Each role contains the minimum set of privileges needed to perform in that role

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Formal SQL Tuning For Oracle Databases Practical Efficiency Efficient Practice

Authors: Leonid Nossov ,Hanno Ernst ,Victor Chupis

1st Edition

3662570564, 978-3662570562

More Books

Students also viewed these Databases questions