Privesc Linpeas
Privesc Linpeas runs comprehensive post-exploitation scans to uncover privilege escalation opportunities on Linux systems, checking for SUID/SGID binaries, sudo misconfigurations, exposed credentials, and kernel vulnerabilities. Results are color-coded by severity and mapped to exploitation techniques, enabling rapid identification of the highest-confidence escalation paths during authorized penetration tests and red team engagements.
Privesc Linpeas automates discovery of Linux privilege escalation vectors through comprehensive system enumeration and attack surface analysis.
AI-generated summary based on this skill's SKILL.md
Decision gist · record as of 2026-04-15
Privesc Linpeas automates discovery of Linux privilege escalation vectors through comprehensive system enumeration and attack surface analysis. Privesc Linpeas runs comprehensive post-exploitation scans to uncover privilege escalation opportunities on Linux systems, checking for SUID/SGID binaries, sudo misconfigurations, exposed credentials, and kernel vulnerabilities. Results are color-coded by severity and mapped to exploitation techniques, enabling rapid identification of the highest-confidence escalation paths during authorized penetration tests and red team engagements.
Use it when
- Privesc Linpeas systematically scans Linux hosts to detect privilege escalation vectors by examining SUID/SGID binaries.
- Yes, Privesc Linpeas automates comprehensive Linux system enumeration and security assessment by running post-exploitation scans.
Install
AgentSecOps/SecOpsAgentKit/privesc-linpeas · repository language: Python
generated, unverified - the skill's exact subdirectory could not be determined; check the repository on GitHub
Open directory. Skills are indexed for reading, not audited. Review a skill's body before installing it.
Frequently asked questions
AI-generated answers based on this skill's SKILL.md and metadata
What is Privesc Linpeas and what does it do?
Privesc Linpeas is a comprehensive Linux privilege escalation scanner that runs post-exploitation enumeration to uncover escalation opportunities. It checks for SUID/SGID binaries, sudo misconfigurations, exposed credentials, and kernel vulnerabilities, then color-codes results by severity and maps findings to exploitation techniques for rapid identification of the highest-confidence escalation paths.
How does Privesc Linpeas help identify privilege escalation vectors on Linux systems?
Privesc Linpeas systematically scans Linux hosts to detect privilege escalation vectors by examining SUID/SGID binaries, sudo configurations, credential exposure, and kernel weaknesses. It prioritizes findings by severity and correlates them with known exploitation techniques, enabling penetration testers to quickly identify and exploit the most viable local privilege escalation paths during authorized assessments.
Can Privesc Linpeas automate Linux system enumeration and security assessment?
Yes, Privesc Linpeas automates comprehensive Linux system enumeration and security assessment by running post-exploitation scans that detect misconfigurations enabling local privilege escalation. The tool streamlines reconnaissance by automatically checking multiple attack surfaces and presenting color-coded results mapped to exploitation techniques, reducing manual enumeration effort during penetration tests.
What types of misconfigurations does Privesc Linpeas detect?
Privesc Linpeas detects misconfigurations that enable local privilege escalation, including SUID/SGID binary weaknesses, sudo permission errors, exposed credentials, and kernel vulnerabilities. Each misconfiguration is severity-rated and linked to exploitation techniques, helping security teams prioritize remediation and understand the real-world impact of each finding.
Is Privesc Linpeas suitable for penetration testing reconnaissance?
Yes, Privesc Linpeas is designed for authorized penetration testing and red team engagements, automating reconnaissance on target Linux hosts to uncover privilege escalation opportunities. Its rapid scanning and severity-mapped results enable efficient post-exploitation assessment and help testers identify the most viable paths to elevated privileges during authorized security assessments.
Let your AI agent find skills like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 56,283 agent skills by what they can do, searchable in plain language.
wish › “Identify privilege escalation vectors on Linux systems”
Give your agent the search over MCP, or paste the wish link into any chat. No install? Search from any chat →
Related skills
This skill guides you through methodical privilege escalation assessments on Linux systems, covering enumeration of kernel exploits, sudo misconfigurations, SUID binaries, capabilities, cron jobs, PATH hijacking, and NFS weaknesses. It provides workflows for identifying attack vectors and executing exploitation techniques to achieve root-level access from a low-privilege shell.
This skill covers systematic Linux privilege escalation from low-privilege shell access to root. It walks through enumeration, SUID/SGID binary exploitation, capability abuse, cron job manipulation, NFS misconfigurations, writable system files, LD_PRELOAD tricks, Docker group abuse, and library hijacking—with specific commands and exploitation tables for each vector.
Linux Pentester Notes organizes practical commands and methodologies across the full penetration testing lifecycle—from initial reconnaissance through post-exploitation. Use it as a quick reference for security assessments, CTF challenges, and Linux security research.
Linux Discovery helps penetration testers systematically identify privilege escalation opportunities on Linux hosts through enumeration of system configuration, sudo settings, group memberships, and kernel vulnerabilities. The skill gathers baseline system information, analyzes user context and permissions, and maps exploitable vectors while respecting scope boundaries and engagement logging.
Linux Pentester Practical Commands is a reference collection of command-line operations organized by penetration testing phase. It covers reconnaissance, enumeration, exploitation, privilege escalation, and post-exploitation workflows with real-world examples used in security assessments and CTF exercises.
Linux Pentesting Commands organizes shell commands across the full penetration testing lifecycle: reconnaissance, enumeration, exploitation, privilege escalation, and post-exploitation. It covers reconnaissance techniques, service discovery, SUID/capability enumeration, reverse shells, sudo exploitation, and persistence methods with practical examples.
More skills privilege-escalation-methods (MIT) · agentsop-multi-tenant-rag (MIT)