arXiv · 2405.02106
Got Root? A Linux Priv-Esc Benchmark
Abstract
Linux systems are integral to the infrastructure of modern computing environments, necessitating robust security measures to prevent unauthorized access. Privilege escalation attacks represent a significant threat, typically allowing attackers to elevate their privileges from an initial low-privilege account to the all-powerful root account. A benchmark set of vulnerable systems is of high importance to evaluate the effectiveness of privilege-escalation techniques performed by both humans and automated tooling. Analyzing their behavior allows defenders to better fortify their entrusted Linux systems and thus protect their infrastructure from potentially devastating attacks. To address this gap, we developed a comprehensive benchmark for Linux privilege escalation. It provides a standardized platform to evaluate and compare the performance of human and synthetic actors, e.g., hacking scripts or automated tooling.
Explore related subjects
Keep this discovery
Andreas Happe, Jürgen Cito. 2024-05-03. Got Root? A Linux Priv-Esc Benchmark. https://arxiv.org/abs/2405.02106
Cite the original work for its findings. Save a collection to share your selection of sources.