{"enrichment":{"faq":[{"a":"Linux File Path Abuse is a skill for identifying and testing file path traversal vulnerabilities in Linux systems. It guides penetration testers through privilege escalation vectors including writable critical files, NFS exports, shared library hijacking, and group-based access. The skill covers assessment of available attack paths, exploitation techniques for each vector, and integration with engagement logging.","q":"What is Linux File Path Abuse and what vulnerabilities does it target?"},{"a":"Linux File Path Abuse teaches detection of symlink and directory escape exploitation techniques as a core security assessment capability. The skill covers symlink abuse detection methods and directory escape vulnerabilities, enabling testers to identify how attackers exploit symbolic links and escape directory boundaries to gain unauthorized access to sensitive files and escalate privileges.","q":"How can I detect symlink and directory escape exploitation techniques?"},{"a":"Testing for path traversal vulnerabilities in Linux with this skill involves performing comprehensive security assessments of file path handling mechanisms. Linux File Path Abuse provides techniques to identify path-based attack vectors, test directory traversal defenses, and discover injection points where attackers could bypass path restrictions to access files outside intended directories.","q":"What does path traversal vulnerabilities linux testing involve?"},{"a":"Linux File Path Abuse equips penetration testers with methods to learn about and exploit path-based attack vectors. The skill integrates engagement logging and state management to document findings, assess available exploitation vectors, and demonstrate proof-of-concept attacks through writable critical files, library hijacking, and group-based access escalation techniques.","q":"How does Linux File Path Abuse help with penetration testing?"},{"a":"Linux File Path Abuse helps identify multiple categories of file path security flaws including path traversal weaknesses, symlink abuse vulnerabilities, directory escape conditions, and file path injection points. The skill provides assessment frameworks for evaluating how applications handle user-supplied paths and whether they properly validate and sanitize file path inputs.","q":"What file path security flaws can this skill help identify?"},{"a":"Yes, Linux File Path Abuse is released under the GPL-3.0 license, making it open source and freely available for security professionals to use, modify, and distribute according to GPL-3.0 terms.","q":"Is Linux File Path Abuse open source and what license does it use?"}],"shadow_tags":["path-traversal","symlink-attacks","directory-escape","file-injection","security-testing","vulnerability-assessment","exploitation-technique","access-control"],"summary_rewrite":"This skill guides penetration testers through Linux privilege escalation via writable critical files, NFS exports, shared library hijacking, and group-based access. It covers assessment of available vectors, exploitation techniques for each path, and integration with engagement logging and state management."},"gist":{"api_url":"https://skillfed.io/api/skills/blacklanternsecurity/red-run/linux-file-path-abuse.json","as_of":"2026-04-01","description":"Linux File Path Abuse helps testers escalate privileges by exploiting writable system files and group.","install":{"manual":["git clone https://github.com/blacklanternsecurity/red-run","cp -r red-run ~/.claude/skills/linux-file-path-abuse"],"primary":"npx skillfed install blacklanternsecurity/red-run/linux-file-path-abuse","version":"3ff01eb3"},"kind":"skill","mirror_url":"https://skillfed.io/blacklanternsecurity/red-run/linux-file-path-abuse.md","similar":[{"id":"yaklang/hack-skills/linux-privilege-escalation","name":"linux-privilege-escalation","publisher":"yaklang/hack-skills","url":"https://skillfed.io/yaklang/hack-skills/linux-privilege-escalation"},{"id":"blacklanternsecurity/red-run/linux-discovery","name":"Linux Discovery","publisher":"blacklanternsecurity/red-run","url":"https://skillfed.io/blacklanternsecurity/red-run/linux-discovery"},{"id":"blacklanternsecurity/red-run/linux-cron-service-abuse","name":"Linux Cron Service Abuse","publisher":"blacklanternsecurity/red-run","url":"https://skillfed.io/blacklanternsecurity/red-run/linux-cron-service-abuse"},{"id":"blacklanternsecurity/red-run/linux-sudo-suid-capabilities","name":"Linux Sudo Suid Capabilities","publisher":"blacklanternsecurity/red-run","url":"https://skillfed.io/blacklanternsecurity/red-run/linux-sudo-suid-capabilities"},{"id":"zebbern/claude-code-guide/linux-privilege-escalation","name":"linux-privilege-escalation","publisher":"zebbern/claude-code-guide","url":"https://skillfed.io/zebbern/claude-code-guide/linux-privilege-escalation"}],"title":"Linux File Path Abuse by blacklanternsecurity \u2014 SkillFed","use":{"when":["Linux File Path Abuse teaches detection of symlink and directory escape exploitation techniques as a core security assessment capability.","Testing for path traversal vulnerabilities in Linux with this skill involves performing comprehensive security assessments of file path."]},"what":{"lead":"Linux File Path Abuse helps testers escalate privileges by exploiting writable system files and group memberships.","rest":"This skill guides penetration testers through Linux privilege escalation via writable critical files, NFS exports, shared library hijacking, and group-based access. It covers assessment of available vectors, exploitation techniques for each path, and integration with engagement logging and state management."}},"id":"blacklanternsecurity/red-run/linux-file-path-abuse","install":{"mode":"external","repo":"https://github.com/blacklanternsecurity/red-run"},"links":{"html":"https://skillfed.io/blacklanternsecurity/red-run/linux-file-path-abuse","md":"https://skillfed.io/blacklanternsecurity/red-run/linux-file-path-abuse.md","repo":"https://github.com/blacklanternsecurity/red-run"},"meta":{"agents_supported":[],"first_seen":"2026-07-28","forks":34,"language":"Python","last_updated":"2026-04-01","license":"GPL-3.0","name":"Linux File Path Abuse","publisher":"blacklanternsecurity","stars":241},"relations":{"similar":[{"id":"yaklang/hack-skills/linux-privilege-escalation"},{"id":"blacklanternsecurity/red-run/linux-discovery"},{"id":"blacklanternsecurity/red-run/linux-cron-service-abuse"},{"id":"blacklanternsecurity/red-run/linux-sudo-suid-capabilities"},{"id":"zebbern/claude-code-guide/linux-privilege-escalation"},{"id":"Aradotso/security-skills/linux-pentesting-commands"},{"id":"Aradotso/security-skills/linux-pentester-practical-commands"},{"id":"zebbern/claude-code-guide/privilege-escalation-methods"},{"id":"yaklang/hack-skills/linux-lateral-movement"},{"id":"AgentSecOps/SecOpsAgentKit/privesc-linpeas"}]},"slug":{"owner":"blacklanternsecurity","repo":"red-run","skill":"linux-file-path-abuse"},"version":"3ff01eb3"}
