β‘Sudo Rights Abuse
π― Overview
π Sudo Enumeration
Check Sudo Privileges
# List sudo permissions
sudo -l
# Check without password (NOPASSWD entries)
sudo -l -U username
# Example output:
# User htb-student may run the following commands:
# (root) NOPASSWD: /usr/sbin/tcpdumpSudo Configuration Files
# Main sudoers file
cat /etc/sudoers
# Additional configs
ls -la /etc/sudoers.d/
cat /etc/sudoers.d/*π― Common Vulnerable Sudo Entries
High-Risk Commands
π GTFOBins Exploitation
Text Editor Abuse
System Command Abuse
Interpreter Abuse
π§ Advanced Sudo Abuse
tcpdump Postrotate Exploitation
Command Injection in Arguments
Wildcard Abuse in Sudo
π Enumeration & Discovery
Sudo Audit Script
Specific Command Analysis
π Quick Reference
Immediate Escalation Commands
Emergency Sudo Checks
β οΈ Dangerous Sudo Configurations
Red Flags
Privilege Escalation Vectors
Last updated