Finding writable files
Once you gain access to a system, you want to start exploring. Typically, you will look for ways to escalate your privilege or maintain persistence. A great way to look for methods of persistence is to identify which files have write permissions.
You can look at the file permission settings and see if you or everyone has write permission. You can look explicitly for modes such as 777, but a better way is to use a bitmask and look specifically at the write permission bits.
The permissions are represented by several bits: the user permissions, group permissions, and finally, the permissions for everyone. The string representation of a 0777 permission would look like this: -rwxrwxrwx. The bit we are interested in is the ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access