Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Missing "doas" configuration checking #46

Open
Reelix opened this issue May 7, 2021 · 4 comments
Open

Missing "doas" configuration checking #46

Reelix opened this issue May 7, 2021 · 4 comments
Assignees

Comments

@Reelix
Copy link

Reelix commented May 7, 2021

https://book.hacktricks.xyz/linux-unix/privilege-escalation#doas

Paths:

  • /etc/doas.conf
  • /usr/local/etc/doas.conf
@diego-treitos
Copy link
Owner

Is there any Linux distribution that uses doas? Isn't it used only in BSD systems?

@Reelix
Copy link
Author

Reelix commented May 30, 2021

I came across this case in two different CTFs and noticed that it was a privesc method that LSE missed, so decided to add it here.

@diego-treitos
Copy link
Owner

I see. I will look into it but if it is an exclusive BSD command it will a low priority task as it is not really in the scope of the tool, but I agree it would be a "nice to have" test.

Thanks for taking your time to suggest it.

@loneicewolf
Copy link

loneicewolf commented Jul 11, 2021

@diego-treitos
[Just to confirm this]
I can confirm, one CTF I did awhile ago needed LSE; I do not remember what OS it was, (at least not the exact version) Will check it and come back -> edit my comment to include it.

Have a nice day on both of you!

@diego-treitos diego-treitos self-assigned this Feb 1, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants