An Inverse Approach to Windows' Resource-Based Permission Mechanism for Access Permission Vulnerability Detection

dc.contributor.authorTemiz, Hakan
dc.contributor.authorBüyükeke, Ahmet
dc.date.accessioned2025-01-06T17:23:33Z
dc.date.available2025-01-06T17:23:33Z
dc.date.issued2022
dc.departmentAdana Alparslan Türkeş Bilim ve Teknoloji Üniversitesi
dc.description.abstractIn organizations, employees work with information stored in files according to their duties and responsibilities. Windows uses resource-based access permissions that any permission for any user has to be set separately per resource. This approach gets complicated as the number of resources and users increase, and causes oversights in assigning permissions. Therefore, a special mechanism is required to scrutinize what permissions any employee has on any set of resources. This requirement is circumvented by reversing the Windows’ approach in terms of user-accessible resources. This approach is implemented by a program allowing quick and easy examination of any type of permissions granted or denied to active directory users on any folder. In this way, administrators can make sure there is no any missing or overlooked setting that could cause a security vulnerability. This approach can easily be extended to scrutinize other resources, and for other local or active directory objects.
dc.identifier.doi10.47495/okufbed.1033540
dc.identifier.endpage550
dc.identifier.issn2687-3729
dc.identifier.issue2
dc.identifier.startpage534
dc.identifier.trdizinid1204740
dc.identifier.urihttps://doi.org/10.47495/okufbed.1033540
dc.identifier.urihttps://search.trdizin.gov.tr/tr/yayin/detay/1204740
dc.identifier.urihttps://hdl.handle.net/20.500.14669/811
dc.identifier.volume5
dc.indekslendigikaynakTR-Dizin
dc.language.isoen
dc.relation.ispartofOsmaniye Korkut Ata Üniversitesi Fen Bilimleri Enstitüsü Dergisi (Online)
dc.relation.publicationcategoryMakale - Ulusal Hakemli Dergi - Kurum Öğretim Elemanı
dc.rightsinfo:eu-repo/semantics/openAccess
dc.snmzKA_20241211
dc.subjectInspection
dc.subjectActive directory users
dc.subjectWindows Server
dc.subjectSecurity vulnerability
dc.subjectAccess permissions
dc.titleAn Inverse Approach to Windows' Resource-Based Permission Mechanism for Access Permission Vulnerability Detection
dc.typeArticle

Dosyalar