A security engineer Identifies a vulnerability m a containerized application. The vulnerability can be exploited by a privileged process to read tie content of the host's memory. The security engineer reviews the following Dockerfile to determine a solution to mitigate similar exploits:
Which of the following is the best solution to prevent similar exploits by privileged processes?
The output from the 'ps' command indicates there is a process running under the UID (User ID) of 0, which is the root user, and the command that was run is '/var/www/command.py'. Given that the normal Apache processes are running under their own UID (65535), this suggests that a command was executed with root privileges that typically should not have such high-level access. This is a strong indicator of privilege escalation, where an unauthorized user or process gains elevated access to resources that are normally protected from an application or user. Reference: CompTIA Cloud+ Certification Study Guide (Exam CV0-004) by Scott Wilson and Eric Vanderburg
Leatha
1 months agoRasheeda
1 months agoToi
2 days agoArthur
6 days agoChau
2 months agoInocencia
25 days agoJose
1 months agoAnnette
2 months agoMarlon
2 months agoDalene
18 days agoMaryanne
1 months agoValda
1 months agoIraida
2 months agoCasey
1 months agoReita
1 months agoBernardo
2 months agoGeraldine
2 months agoKaran
3 months agoCorrina
3 months agoKaran
3 months ago