linux提权之信息收集

linux提权之信息收集
  1. cat /etc/passwd 列出系统上的所有用户

  2. grep -v -E "^#" /etc/passwd | awk -F: '$3 == 0 { print $1}' 列出所有的超级用户账户

  3. w 谁目前已登录,他们正在做什么

  4. last 最后登录用户的列表

  5. cat /etc/sudoers 谁被允许以root身份执行

  6. env 显示环境变量

  7. 查看以root 运行的进程

ps aux | grep rootps -ef | grep root

8.cat /etc/shells 显示可用的shellrc(shell解释器,如bash,zsh,dash)

9.有无ssh 私钥

cat ~/.ssh/authorized_keyscat ~/.ssh/identity.pubcat ~/.ssh/identitycat ~/.ssh/id_rsa.pubcat ~/.ssh/id_rsacat ~/.ssh/id_dsa.pubcat ~/.ssh/id_dsacat /etc/ssh/ssh_configcat /etc/ssh/sshd_configcat /etc/ssh/ssh_host_dsa_key.pubcat /etc/ssh/ssh_host_dsa_keycat /etc/ssh/ssh_host_rsa_key.pubcat /etc/ssh/ssh_host_rsa_keycat /etc/ssh/ssh_host_key.pubcat /etc/ssh/ssh_host_key