Linux-Smart-Enumeration - Linux Enumeration Tool For Pentesting As Well As Ctfs Alongside Verbosity Levels
First, a couplet of useful oneliners ;)
wget "https://raw.githubusercontent.com/diego-treitos/linux-smart-enumeration/master/lse.sh" -O lse.sh
curl "https://raw.githubusercontent.com/diego-treitos/linux-smart-enumeration/master/lse.sh" -o lse.sh
linux-smart-enumeration
Linux enumeration tools for pentesting as well as CTFs
This projection was inspired past times https://github.com/rebootuser/LinEnum as well as uses many of its tests.
Unlike LinEnum,
lse
tries to gradualy bring out the information depending on its importance from a privesc betoken of view.What is it?
This script volition demo relevant information well-nigh the safety of the local Linux system.
It has iii levels of verbosity then yous tin command how much information yous see.
In the default score yous should come across the highly of import safety flaws inward the system. The score
1
(./lse.sh -l1
) shows interesting information that should tending yous to privesc. The score 2
(./lse.sh -l2
) volition merely dump all the information it gathers well-nigh the system.By default it volition inquire yous to a greater extent than or less questions: mainly the electrical flow user password (if yous know it ;) then it tin produce to a greater extent than or less additional tests.
How to role it?
The thought is to larn the information gradually.
First yous should execute it merely similar
./lse.sh
. If yous come across to a greater extent than or less light-green yes!
, yous in all likelihood convey already to a greater extent than or less skillful materials to move with.If not, yous should endeavor the
level 1
verbosity amongst ./lse.sh -l1
as well as yous volition come across to a greater extent than or less to a greater extent than information that tin live on interesting.If that does non help,
level 2
volition merely dump everything yous tin assemble well-nigh the service using ./lse.sh -l2
. In this instance yous mightiness uncovering useful to role ./lse.sh -l2 | less -r
.You tin also choose what tests to execute past times passing the
-s
parameter. With it yous tin choose specific tests or sections to live on executed. For instance ./lse.sh -l2 -s usr010,net,pro
volition execute the examine usr010
as well as all the tests inward the sections net
as well as pro
.Use: ./lse.sh [options] OPTIONS -c Disable colouring -i Non interactive trend -h This tending -l LEVEL Output verbosity score 0: Show highly of import results. (default) 1: Show interesting results. 2: Show all gathered information. -s SELECTION Comma separated listing of sections or tests to run. Available sections: usr: User related tests. sud: Sudo related tests. fst: File organization related tests. sys: System related tests. sec: Security measures related tests. ret: Recurren tasks (cron, timers) related tests. net: Network related tests. srv: Services related tests. pro: Processes related tests. sof: Softw are related tests. ctn: Container (docker, lxc) related tests. Specific tests tin live on used amongst their IDs (i.e.: usr020,sud)
Is it pretty?
Usage demo
Also available inward webm video
Level 0 (default) output sample
Level 1 verbosity output sample
Level 2 verbosity output sample