LINUX OPERATSION TIZIMIDA FOYDALANUVCHILAR, HUQUQLAR VA RUXSATLARNI BOSHQARISHNING XAVFSIZLIK SAMARADORLIGI TAHLILI
;
https://doi.org/10.5281/zenodo.20552714Abstrak
Linux operatsion tizimlarida an’anaviy datchiklar (Discretionary Access Control – DAC) va superuser (root) hisobiga cheksiz imtiyozlar berilishi Minimal Imtiyozlar Prinsipiga (POLP) toʻgʻri kelmaydi hamda tizim xavfsizligiga jiddiy tahdid soladi. Ushbu tadqiqot root huquqlarini boʻlaklarga ajratuvchi Linux Capabilities (imkoniyatlar) mexanizmini tahlil qilish hamda yadro darajasida kirish ruxsatlarini cheklash orqali operatsion tizimni qat'iylashtirish (OS Hardening) muammolariga qaratilgan.Iqtiboslar
O‘zbekiston Respublikasining “Kiberxavfsizlik to‘g‘risida”gi O‘RQ–764-son Qonuni. 15.04.2022. – Toshkent, 2022. – 4–9-betlar.
W. Stallings, Computer Security: Principles and Practice, 4th ed. Pearson, 2018.
M. Kerrisk, The Linux Programming Interface: A Linux and UNIX System Programming Handbook, No Starch Press, 2010.
"OS Hardening and Privilege Management using Linux Capabilities," in Proceedings of the 2023 7th Cyber Security in Networking Conference (CSNet), IEEE, 2023, pp. 130-135. doi: 10.1109/CSNET59123.2023.10339753.
National Security Agency (NSA), "Operating System Hardening Guide for Linux Systems," Cybersecurity Technical Report, 2024.
A. Thalanany, "Securing Linux Systems via BPF LSM and eBPF Sandboxing," Journal of Cyber Security Development, vol. 12, no. 2, pp. 89-102, 2024.
B. Gregg, BPF Performance Tools, Addison-Wesley Professional, 2020.
J. S. Shapiro, "Understanding capability-based security," ACM Queue, vol. 4, no. 5, pp. 40-48, 2006.
##submission.downloads##
Nashr qilingan
Nashr
Bo'lim
Litsenziya
##submission.copyrightStatement##
##submission.license.cc.by4.footer##Iqtibos keltirish tartibi