Dienstag April 19, 2005
"Trusted OS to the Security Rescue" "General-purpose operating systems have strengthened their reliance on this principle by fine-tuning the privileges of applications and users. For example, Solaris 10 has new process rights management that limits an application's rights to the bare minimum required for it to run. In this system, even if an application is compromised by a buffer overflow or an unpatched vulnerability, an attacker cannot increase his or her privileges on a machine. In the Linux world, Exec Shield and Pax are each vying to become the preferred technology for protecting the memories of Linux servers by limiting the damage compromised applications can do."
The full article can be found here.
( Apr 19 2005, 09:28:38 AM CEST )
Permalink
|