Privesc
Commandes Privesc complètes et workflows pour l'administration du système sur toutes les plateformes.
Commandes de base
Command | Description |
---|---|
privesc --version |
Show privesc version |
privesc --help |
Display help information |
privesc init |
Initialize privesc in current directory |
privesc status |
Check current status |
privesc list |
List available options |
privesc info |
Display system information |
privesc config |
Show configuration settings |
privesc update |
Update to latest version |
privesc start |
Start privesc service |
privesc stop |
Stop privesc service |
privesc restart |
Restart privesc service |
privesc reload |
Reload configuration |
Installation
Linux/Ubuntu
# Package manager installation
sudo apt update
sudo apt install privesc
# Alternative installation
wget https://github.com/example/privesc/releases/latest/download/privesc-linux
chmod +x privesc-linux
sudo mv privesc-linux /usr/local/bin/privesc
# Build from source
git clone https://github.com/example/privesc.git
cd privesc
make && sudo make install
MACOS
# Homebrew installation
brew install privesc
# MacPorts installation
sudo port install privesc
# Manual installation
curl -L -o privesc https://github.com/example/privesc/releases/latest/download/privesc-macos
chmod +x privesc
sudo mv privesc /usr/local/bin/
```_
### Fenêtres
```powershell
# Chocolatey installation
choco install privesc
# Scoop installation
scoop install privesc
# Winget installation
winget install privesc
# Manual installation
# Download from https://github.com/example/privesc/releases
# Extract and add to PATH
```_
## Configuration
|Command|Description|
|---------|-------------|
|`privesc config show`|Display current configuration|
|`privesc config list`|List all configuration options|
|`privesc config set <key> <value>`|Set configuration value|
|`privesc config get <key>`|Get configuration value|
|`privesc config unset <key>`|Remove configuration value|
|`privesc config reset`|Reset to default configuration|
|`privesc config validate`|Validate configuration file|
|`privesc config export`|Export configuration to file|
## Opérations avancées
### Opérations de fichiers
```bash
# Create new file/resource
privesc create <name>
# Read file/resource
privesc read <name>
# Update existing file/resource
privesc update <name>
# Delete file/resource
privesc delete <name>
# Copy file/resource
privesc copy <source> <destination>
# Move file/resource
privesc move <source> <destination>
# List all files/resources
privesc list --all
# Search for files/resources
privesc search <pattern>
Opérations réseau
# Connect to remote host
privesc connect <host>:<port>
# Listen on specific port
privesc listen --port <port>
# Send data to target
privesc send --target <host> --data "<data>"
# Receive data from source
privesc receive --source <host>
# Test connectivity
privesc ping <host>
# Scan network range
privesc scan <network>
# Monitor network traffic
privesc monitor --interface <interface>
# Proxy connections
privesc proxy --listen <port> --target <host>:<port>
Gestion des processus
# Start background process
privesc start --daemon
# Stop running process
privesc stop --force
# Restart with new configuration
privesc restart --config <file>
# Check process status
privesc status --verbose
# Monitor process performance
privesc monitor --metrics
# Kill all processes
privesc killall
# Show running processes
privesc ps
# Manage process priority
privesc priority --pid <pid> --level <level>
Caractéristiques de sécurité
Authentification
# Login with username/password
privesc login --user <username>
# Login with API key
privesc login --api-key <key>
# Login with certificate
privesc login --cert <cert_file>
# Logout current session
privesc logout
# Change password
privesc passwd
# Generate new API key
privesc generate-key --name <key_name>
# List active sessions
privesc sessions
# Revoke session
privesc revoke --session <session_id>
Chiffrement
# Encrypt file
privesc encrypt --input <file> --output <encrypted_file>
# Decrypt file
privesc decrypt --input <encrypted_file> --output <file>
# Generate encryption key
privesc keygen --type <type> --size <size>
# Sign file
privesc sign --input <file> --key <private_key>
# Verify signature
privesc verify --input <file> --signature <sig_file>
# Hash file
privesc hash --algorithm <algo> --input <file>
# Generate certificate
privesc cert generate --name <name> --days <days>
# Verify certificate
privesc cert verify --cert <cert_file>
Surveillance et exploitation forestière
Surveillance du système
# Monitor system resources
privesc monitor --system
# Monitor specific process
privesc monitor --pid <pid>
# Monitor network activity
privesc monitor --network
# Monitor file changes
privesc monitor --files <directory>
# Real-time monitoring
privesc monitor --real-time --interval 1
# Generate monitoring report
privesc report --type monitoring --output <file>
# Set monitoring alerts
privesc alert --threshold <value> --action <action>
# View monitoring history
privesc history --type monitoring
Exploitation forestière
# View logs
privesc logs
# View logs with filter
privesc logs --filter <pattern>
# Follow logs in real-time
privesc logs --follow
# Set log level
privesc logs --level <level>
# Rotate logs
privesc logs --rotate
# Export logs
privesc logs --export <file>
# Clear logs
privesc logs --clear
# Archive logs
privesc logs --archive <archive_file>
Dépannage
Questions communes
Numéro : Commande non trouvée
# Check if privesc is installed
which privesc
privesc --version
# Check PATH variable
echo $PATH
# Reinstall if necessary
sudo apt reinstall privesc
# or
brew reinstall privesc
Émission : autorisation refusée
# Run with elevated privileges
sudo privesc <command>
# Check file permissions
ls -la $(which privesc)
# Fix permissions
chmod +x /usr/local/bin/privesc
# Check ownership
sudo chown $USER:$USER /usr/local/bin/privesc
Question : Erreurs de configuration
# Validate configuration
privesc config validate
# Reset to default configuration
privesc config reset
# Check configuration file location
privesc config show --file
# Backup current configuration
privesc config export > backup.conf
# Restore from backup
privesc config import backup.conf
*Numéro: Le service ne démarre pas *
# Check service status
privesc status --detailed
# Check system logs
journalctl -u privesc
# Start in debug mode
privesc start --debug
# Check port availability
netstat -tulpn|grep <port>
# Kill conflicting processes
privesc killall --force
Déboguer les commandes
Command | Description |
---|---|
privesc --debug |
Enable debug output |
privesc --verbose |
Enable verbose logging |
privesc --trace |
Enable trace logging |
privesc test |
Run built-in tests |
privesc doctor |
Run system health check |
privesc diagnose |
Generate diagnostic report |
privesc benchmark |
Run performance benchmarks |
privesc validate |
Validate installation and configuration |
Optimisation des performances
Gestion des ressources
# Set memory limit
privesc --max-memory 1G <command>
# Set CPU limit
privesc --max-cpu 2 <command>
# Enable caching
privesc --cache-enabled <command>
# Set cache size
privesc --cache-size 100M <command>
# Clear cache
privesc cache clear
# Show cache statistics
privesc cache stats
# Optimize performance
privesc optimize --profile <profile>
# Show performance metrics
privesc metrics
Traitement parallèle
# Enable parallel processing
privesc --parallel <command>
# Set number of workers
privesc --workers 4 <command>
# Process in batches
privesc --batch-size 100 <command>
# Queue management
privesc queue add <item>
privesc queue process
privesc queue status
privesc queue clear
Intégration
Scénario
#!/bin/bash
# Example script using privesc
set -euo pipefail
# Configuration
CONFIG_FILE="config.yaml"
LOG_FILE="privesc.log"
# Check if privesc is available
if ! command -v privesc &> /dev/null; then
echo "Error: privesc is not installed" >&2
exit 1
fi
# Function to log messages
log() \\\\{
echo "$(date '+%Y-%m-%d %H:%M:%S') - $1"|tee -a "$LOG_FILE"
\\\\}
# Main operation
main() \\\\{
log "Starting privesc operation"
if privesc --config "$CONFIG_FILE" run; then
log "Operation completed successfully"
exit 0
else
log "Operation failed with exit code $?"
exit 1
fi
\\\\}
# Cleanup function
cleanup() \\\\{
log "Cleaning up"
privesc cleanup
\\\\}
# Set trap for cleanup
trap cleanup EXIT
# Run main function
main "$@"
Intégration de l'API
#!/usr/bin/env python3
"""
Python wrapper for the tool
"""
import subprocess
import json
import logging
from pathlib import Path
from typing import Dict, List, Optional
class ToolWrapper:
def __init__(self, config_file: Optional[str] = None):
self.config_file = config_file
self.logger = logging.getLogger(__name__)
def run_command(self, args: List[str]) -> Dict:
"""Run command and return parsed output"""
cmd = ['tool_name']
if self.config_file:
cmd.extend(['--config', self.config_file])
cmd.extend(args)
try:
result = subprocess.run(
cmd,
capture_output=True,
text=True,
check=True
)
return \\\\{'stdout': result.stdout, 'stderr': result.stderr\\\\}
except subprocess.CalledProcessError as e:
self.logger.error(f"Command failed: \\\\{e\\\\}")
raise
def status(self) -> Dict:
"""Get current status"""
return self.run_command(['status'])
def start(self) -> Dict:
"""Start service"""
return self.run_command(['start'])
def stop(self) -> Dict:
"""Stop service"""
return self.run_command(['stop'])
# Example usage
if __name__ == "__main__":
wrapper = ToolWrapper()
status = wrapper.status()
print(json.dumps(status, indent=2))
Variables d'environnement
Variable | Description | Default |
---|---|---|
PRIVESC_CONFIG |
Configuration file path | ~/.privesc/config.yaml |
PRIVESC_HOME |
Home directory | ~/.privesc |
PRIVESC_LOG_LEVEL |
Logging level | INFO |
PRIVESC_LOG_FILE |
Log file path | ~/.privesc/logs/privesc.log |
PRIVESC_CACHE_DIR |
Cache directory | ~/.privesc/cache |
PRIVESC_DATA_DIR |
Data directory | ~/.privesc/data |
PRIVESC_TIMEOUT |
Default timeout | 30s |
PRIVESC_MAX_WORKERS |
Maximum workers | 4 |
Fichier de configuration
# ~/.privesc/config.yaml
version: "1.0"
# General settings
settings:
debug: false
verbose: false
log_level: "INFO"
log_file: "~/.privesc/logs/privesc.log"
timeout: 30
max_workers: 4
# Network configuration
network:
host: "localhost"
port: 8080
ssl: true
timeout: 30
retries: 3
# Security settings
security:
auth_required: true
api_key: ""
encryption: "AES256"
verify_ssl: true
# Performance settings
performance:
cache_enabled: true
cache_size: "100M"
cache_dir: "~/.privesc/cache"
max_memory: "1G"
# Monitoring settings
monitoring:
enabled: true
interval: 60
metrics_enabled: true
alerts_enabled: true
Exemples
Flux de travail de base
# 1. Initialize privesc
privesc init
# 2. Configure basic settings
privesc config set host example.com
privesc config set port 8080
# 3. Start service
privesc start
# 4. Check status
privesc status
# 5. Perform operations
privesc run --target example.com
# 6. View results
privesc results
# 7. Stop service
privesc stop
Flux de travail avancé
# Comprehensive operation with monitoring
privesc run \
--config production.yaml \
--parallel \
--workers 8 \
--verbose \
--timeout 300 \
--output json \
--log-file operation.log
# Monitor in real-time
privesc monitor --real-time --interval 5
# Generate report
privesc report --type comprehensive --output report.html
Exemple d'automatisation
#!/bin/bash
# Automated privesc workflow
# Configuration
TARGETS_FILE="targets.txt"
RESULTS_DIR="results/$(date +%Y-%m-%d)"
CONFIG_FILE="automation.yaml"
# Create results directory
mkdir -p "$RESULTS_DIR"
# Process each target
while IFS= read -r target; do
echo "Processing $target..."
privesc \
--config "$CONFIG_FILE" \
--output json \
--output-file "$RESULTS_DIR/$\\\\{target\\\\}.json" \
run "$target"
done < "$TARGETS_FILE"
# Generate summary report
privesc report summary \
--input "$RESULTS_DIR/*.json" \
--output "$RESULTS_DIR/summary.html"
Meilleures pratiques
Sécurité
- Vérifiez toujours les comptes de chèques lors du téléchargement des binaires
- Utiliser des méthodes d'authentification fortes (clés API, certificats)
- Mise à jour régulière de la dernière version
- Suivre le principe du moindre privilège
- Activer l'enregistrement des audits pour assurer la conformité
- Utiliser des connexions chiffrées lorsque c'est possible
- Valider toutes les entrées et configurations
- Mettre en place des contrôles d'accès appropriés
Rendement
- Utiliser des limites de ressources appropriées pour votre environnement
- Surveiller régulièrement les performances du système
- Optimisez la configuration pour votre cas d'utilisation
- Utiliser le traitement parallèle lorsque bénéfique
- Mettre en œuvre des stratégies de mise en cache appropriées
- Entretien et nettoyage réguliers
- Goulets d'étranglement de performance du profil
- Utiliser des algorithmes et des structures de données efficaces
Opérations
- Tenir une documentation complète
- Mettre en œuvre des stratégies de sauvegarde appropriées
- Utiliser le contrôle de version pour les configurations
- Surveiller et alerter les mesures critiques
- Mettre en œuvre un traitement approprié des erreurs
- Utiliser l'automatisation pour les tâches répétitives
- Vérifications et mises à jour régulières de la sécurité
- Plan de reprise après sinistre
Développement
- Suivre les normes et conventions de codage
- Écrire des tests complets
- Utiliser l'intégration/déploiement continu
- Mettre en œuvre une exploitation et un suivi appropriés
- Documenter les API et les interfaces
- Utiliser efficacement le contrôle de version
- Révision régulière du code
- Maintenir la compatibilité arrière
Ressources
Documentation officielle
- [Site Web officiel] (LINK_18)
- [Documentation] (LINK_18)
- [Référence API] (LINK_18)
- [Guide d'installation] (LINK_18)
- [Référence de configuration] (LINK_18)
Ressources communautaires
- [Répertoire GitHub] (LINK_18)
- [Suivi d'émission] (LINK_18)
- [Forum communautaire] (LINK_18)
- [Serveur de discorde] (LINK_18)
- [Communauté Reddit] (LINK_18)
- [Débordement de la pile] (LINK_18)
Ressources pédagogiques
- [Guide de démarrage] (LINK_18)
- [Série turque] (LINK_18)
- [Guide des meilleures pratiques] (LINK_18)
- [Tutoriels vidéo] (LINK_18)
- [Cours de formation] (LINK_18)
- [Programme de certification] (LINK_18)
Outils connexes
- Git - Fonctionnalité complémentaire
- [Docker] (LINK_18) - Solution alternative
- Kubernetes - Partenaire d'intégration
*Dernière mise à jour : 2025-07-06.