Share
## https://sploitus.com/exploit?id=B466C778-3EBD-5E09-9A33-7851E748DFEC
# ๐ง Linux Privilege Escalation
Structured notes from the **TCM Security - Linux Privilege Escalation** course, covering enumeration techniques and escalation methods practiced on intentionally vulnerable systems.
   
*Full process documented โ theory, hands-on practice, and what failed and why.*
---
## ๐ Learning Path
| # | Topic | Description |
|---|-------|-------------|
| 1 | [Tips & Resources](./tips_and_resources) | Useful references and cheatsheets |
| 2 | [THM Setup](./thm_setup) | TryHackMe lab environment setup |
| 3 | [System Enumeration](./system_enumeration) | OS, kernel, and system info gathering |
| 4 | [User Enumeration](./user_enumeration) | Users, groups, and privileges |
| 5 | [Network Enumeration](./network_enumeration) | Open ports, interfaces, and connections |
| 6 | [Password Enumeration](./password_enumeration) | Finding stored credentials |
| 7 | [Automated Tools](./automated_tools) | LinPEAS, LinEnum and other tools |
| 8 | [Kernel Exploits](./kernel_exploits) | Exploiting outdated kernels |
| 9 | [Escalation via Stored Passwords](./escalation_via_stored_passwords) | Credentials in files and configs |
| 10 | [Escalation via Weak File Permissions](./escalation_via_weak_file_permission) | Misconfigured file permissions |
| 11 | [Escalation via SSH Keys](./escalation_via_ssh_keys) | Abusing exposed SSH private keys |
| 12 | [Escalating via Sudo Shell Escaping](./escalation_via_sudo_shell_escaping) | GTFOBins and sudo misconfigurations |
| 13 | [Escalation via Extended Functionality](./escalation_via_extended_functionality) | Capabilities and special permissions |
| 14 | [Escalation via LD_PRELOAD](./escalation_via_ld_preload) | Shared library injection |
| 15 | [CVE-2019-14287](./cve-2019-14287) | Sudo policy bypass vulnerability |
| 16 | [CVE-2019-18634](./cve-2019-18634) | pwfeedback buffer overflow |
| 17 | [Escalation via SUID](./escalation_via_suid) | Abusing SUID binaries |
---
## โ๏ธ Methodology
```
System & User Enumeration โ gather OS, user, network info
โ
Password & File Enumeration โ stored creds, weak permissions
โ
Automated Scanning โ LinPEAS, LinEnum
โ
Identify Attack Vector โ SUID, sudo, kernel, CVEs
โ
Exploit & Escalate โ gain root access
โ
Document Findings โ screenshots, commands, output
```
---
## ๐ ๏ธ Tools Used
    
---
## ๐ Each Topic Folder Contains
- Full notes with commands and actual output
- Reasoning behind every technique
- Screenshots of key steps
- Practical examples from TryHackMe labs
---
## ๐ Course
These notes are based on the **TCM Security - Linux Privilege Escalation** course.
Highly recommended for anyone starting out in offensive security.
---
## โ ๏ธ Disclaimer
All techniques documented here are practiced on **intentionally vulnerable systems**.
These are strictly for educational purposes.
Never test systems without explicit authorization.
---
*Adarsh Dubey ยท Cybersecurity Student*