CYBERWARZONE – suidPWN has been published on Github and is free to download. suidPWN allows you to quickly analyse hundreds of files while checking for the SUID flag which may lead to root access.

Example of the suidPWN tool in action

The author of this tool created the code while working on various CTF boxes. The main idea of the tool is to have a fast method to identify SUID binaries which are vulnerable to an LPE.

The developers explain how they scraped binaries from the gtfobins website, stored them into a text file and wrote the script to check SUID binaries from the target against the text file.

