Skip to contentSkip to content
Verified credentials. On-chain. Forever.Learn more
Ewance
Sign in
Cover image for Audit a Linux Distribution for Setuid Binary Risk
Analysis

Audit a Linux Distribution for Setuid Binary Risk

FreeVerified credential2 weeksIntermediate

Overview

What this challenge is about.

Inventory setuid/setgid binaries on a Linux distro, classify risks, and propose eight hardening changes. Earn a verifiable certificate.

The scenario

The bank (regulated by MAS, just completed PCI-DSS recertification) wants to harden the base image before the next 2-year refresh — every setuid binary is an attack-surface decision.

CredentialBlockchain-anchored
ShareableLinkedIn-ready
LanguageEnglish
PaceSelf-paced

The Brief

What you'll do, and what you'll demonstrate.

Audit all setuid binaries in a Linux base image, classify by risk, and produce a 90-day hardening roadmap a CISO can fund.

Earning criteria — what you'll demonstrate

  • Understand the Linux setuid model and its historical attack patterns
  • Use file capabilities (cap_set_file) as a least-privilege alternative to setuid
  • Classify OS-level risk in terms a security leader can fund
  • Write security recommendations that respect operational reality

Program Fit

Where this fits in your program.

Sharpens the same skills your degree expects you to demonstrate.

Aligned coursework coming soon.

One more thing

You can put a credential on your CV by Friday.