Slippery Penguin is intended strictly for use on systems you own or have explicit authorization to test. This tool is provided for educational and security research purposes only. The author assumes no liability for misuse or damage caused by this tool. Use responsibly and in accordance with all applicable local, state, and federal laws.
Slippery Penguin is a local privilege escalation tool for Linux Systems. It enumerates SUID binaries, checks capabilities, traces execution calls, and analyzes binary strings, checking the results against a ranked list of possible indicators for exploration.
Version:
This is v2.2.0, the official release.
Features:
-SUID binary enumeration across the filesystem
-Capability checking via getcap
-Execution call tracing via strace
-Binary string analysis against a severity rated watchlist
-Configurable path filtering and timeout handling
-JSON Logging
-Automatic updating and update checking
-Automatic GTFOBins data comparison
Requirements:
-Linux
-Python 3
-strace
-getcap
-curl
-git
The JSON files are stored in /SlipperyPenguin/logs, within timestamped directories. Each form of output has it's own json file within the timestamped directory.
Note: The curl command will download the official release, not the dev branch. Quick installation-
curl -L https://eclecticelectronics.fly.dev/api/download/2.2.0 -o slipperypenguin-2.2.0.tar.gz
sha256sum slipperypenguin-2.2.0.tar.gzgit clone -b master https://github.com/stlynnxx/Slippery-Penguin.git
cd Slippery-Penguin
chmod +x setup.sh
sudo ./setup.shUsage:
python3 slipperypenguin.py --output logspython3 slipperypenguin.py -o logspython3 slipperypenguin.py --output terminalpython3 slipperypenguin.py -o terminalpython3 slipperypenguin.py --output bothpython3 slipperypenguin.py -o bothpython3 slipperypenguin.py --update-gtfobins
python3 slipperypenguin.py -upgtpython3 slipperypenguin.py --del-logs runpython3 slipperypenguin.py -dl runNOTE: This will result in leaving logs in the directory still, it will just be limited to that run.
python3 slipperypenguin.py --del-logs closepython3 slipperypenguin.py -dl closepython3 slipperypenguin.py --helppython3 slipperypenguin.py -hpython3 slipperypenguin.py --timeout python3 slipperypenguin.py -tpython3 slipperypenguin.py --cleanuppython3 slipperypenguin.py -cpython3 slipperypenguin.py --update runpython3 slipperypenguin.py -upython3 slipperypenguin.py --update closepython3 slipperypenguin.py -u closepython3 slipperypenguin.py --update runpython3 slipperypenguin.py -u runI am physically disabled and do this and hardware repair to support myself; if you feel generous and can afford to do so, every penny helps out!
Slippery Penguin is always open for contributions!
Check out the dev branch if you want to contribute to the newest features (you can read my daily work and goals in the notes file), or check out the issues list!
If you find a bug in the current master release, I would check the dev version to see if it's been fixed but not yet released on master before submitting a PR. I really prefer for contributions to come on the dev branch, but will not automatically reject them on master.