Access Control


CSE 365 - Spring 2024

Exploit various access control issues for the POSIX/UNIX Discretionary Access Control model and answer questions about Mandatory Access Control models.


Lectures and Reading

Access Control Pt. 1

Access Control Pt. 2

Recorded Lectures:

11/8/23 Access Control Pt. 1:



11/13/23 Access Control Pt. 2:



adamd has recorded lectures and slides from prior CSE 365 that might be useful:

Copy of S22 slides

Access Control Pt. 1 - S22


Access Control Pt. 2 - S22



Challenges

Flag owned by you with different permissions

Flag owned by you with different permissions

Flag owned by you with different permissions

How does SETUID work?

How does SETUID and cp work?

Flag owned by a different group

Flag owned by you with different permissions, multiple users

Flag owned by other users

Flag owned by other users

Flag owned by a group

Find the flag using multiple users

Find the flag using multiple users

One Mandatory Access Control question without categories

Five Mandatory Access Control questions without categories

One Mandatory Access Control question with categories

Five Mandatory Access Control questions with categories

Automate answering 20 Mandatory Access Control questions with categories in one second

Automate answering 64 Mandatory Access Control questions with categories in one second

Automate Answering 128 Mandatory Access Control questions with random levels and categories in one second


30-Day Scoreboard:

This scoreboard reflects solves for challenges in this module after the module launched in this dojo.

Rank Hacker Badges Score