Cargando…

A practical approach to learning Linux vulnerabilities

Operating systems based on the Linux kernel are widespread in the microcomputer, mobile, server, and supercomputer market. They have become an integral part of commercial and government information systems in which confidential information, personal data and trade secrets are stored and processed. T...

Descripción completa

Detalles Bibliográficos
Autores principales: Karapetyants, Nikolay, Efanov, Dmitry
Formato: Online Artículo Texto
Lenguaje:English
Publicado: Springer Paris 2022
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9629753/
http://dx.doi.org/10.1007/s11416-022-00455-w
_version_ 1784823460756717568
author Karapetyants, Nikolay
Efanov, Dmitry
author_facet Karapetyants, Nikolay
Efanov, Dmitry
author_sort Karapetyants, Nikolay
collection PubMed
description Operating systems based on the Linux kernel are widespread in the microcomputer, mobile, server, and supercomputer market. They have become an integral part of commercial and government information systems in which confidential information, personal data and trade secrets are stored and processed. Thus, the Linux kernel is a critical object in such systems, because its compromise leads to the compromise of the entire system or an substantial part of it. In most cases, an attacker compromises the kernel by exploiting vulnerabilities, despite the protection mechanisms built into the kernel. And in order to find and eliminate them, an information security professional must have the appropriate skills. Such skills can only be learned through practice. In this paper, we propose a practice-oriented approach to exploring the variety of Linux kernel vulnerabilities in order to acquire the skills to find, analyze and fix them by an information security professional. The proposed approach made it possible to transfer the laboratory practice to online learning during the COVID-19 pandemic.
format Online
Article
Text
id pubmed-9629753
institution National Center for Biotechnology Information
language English
publishDate 2022
publisher Springer Paris
record_format MEDLINE/PubMed
spelling pubmed-96297532022-11-03 A practical approach to learning Linux vulnerabilities Karapetyants, Nikolay Efanov, Dmitry J Comput Virol Hack Tech Original Paper Operating systems based on the Linux kernel are widespread in the microcomputer, mobile, server, and supercomputer market. They have become an integral part of commercial and government information systems in which confidential information, personal data and trade secrets are stored and processed. Thus, the Linux kernel is a critical object in such systems, because its compromise leads to the compromise of the entire system or an substantial part of it. In most cases, an attacker compromises the kernel by exploiting vulnerabilities, despite the protection mechanisms built into the kernel. And in order to find and eliminate them, an information security professional must have the appropriate skills. Such skills can only be learned through practice. In this paper, we propose a practice-oriented approach to exploring the variety of Linux kernel vulnerabilities in order to acquire the skills to find, analyze and fix them by an information security professional. The proposed approach made it possible to transfer the laboratory practice to online learning during the COVID-19 pandemic. Springer Paris 2022-11-02 /pmc/articles/PMC9629753/ http://dx.doi.org/10.1007/s11416-022-00455-w Text en © The Author(s), under exclusive licence to Springer-Verlag France SAS, part of Springer Nature 2022, Springer Nature or its licensor (e.g. a society or other partner) holds exclusive rights to this article under a publishing agreement with the author(s) or other rightsholder(s); author self-archiving of the accepted manuscript version of this article is solely governed by the terms of such publishing agreement and applicable law. This article is made available via the PMC Open Access Subset for unrestricted research re-use and secondary analysis in any form or by any means with acknowledgement of the original source. These permissions are granted for the duration of the World Health Organization (WHO) declaration of COVID-19 as a global pandemic.
spellingShingle Original Paper
Karapetyants, Nikolay
Efanov, Dmitry
A practical approach to learning Linux vulnerabilities
title A practical approach to learning Linux vulnerabilities
title_full A practical approach to learning Linux vulnerabilities
title_fullStr A practical approach to learning Linux vulnerabilities
title_full_unstemmed A practical approach to learning Linux vulnerabilities
title_short A practical approach to learning Linux vulnerabilities
title_sort practical approach to learning linux vulnerabilities
topic Original Paper
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9629753/
http://dx.doi.org/10.1007/s11416-022-00455-w
work_keys_str_mv AT karapetyantsnikolay apracticalapproachtolearninglinuxvulnerabilities
AT efanovdmitry apracticalapproachtolearninglinuxvulnerabilities
AT karapetyantsnikolay practicalapproachtolearninglinuxvulnerabilities
AT efanovdmitry practicalapproachtolearninglinuxvulnerabilities