PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
This report presents the forensic synthetic code analysis of peass-ng/PEASS-ng, a C# project with 20,140 GitHub stars. SynthScan v2.0 examined 292,576 lines of code across 1502 source files, recording 2218 pattern matches distributed across 15 syntactic categories. The overall adjusted score of 7.6 places this repository in the Low AI signal band.
The scanner applied 160+ deterministic lexical heuristics, multi-line block detectors, abstract syntax tree depth profilers, and a cross-file Jaccard similarity matrix to construct a statistically normalised synthetic code estimate. All matches are individually weighted by severity coefficient and contextual multiplier before summation, and the resulting headline score is temporally discounted to account for the repository's development history relative to the commercial emergence of large language model coding tooling (November 2022 onward).
This chart maps the temporal evolution of the adjusted synthetic code score across successive scan runs. An upward trajectory indicates ongoing incorporation of AI-generated code or expanding LLM-assisted scaffolding; a stable or declining trajectory may reflect active human refactoring, code removal, or the adoption of stricter authorship policies. The dashed secondary line (right axis) independently tracks total raw pattern hit count, which can diverge from the normalised score when codebase size changes significantly between scans.
Classifies detected patterns by their diagnostic confidence and structural impact. CRITICAL patterns (coefficient 10) represent definitive synthetic signatures — hallucinated imports, explicit LLM attribution metadata — virtually never produced by human authors. HIGH (5) indicates strong structural tells such as cross-file repetition or cross-linguistic idioms. MEDIUM (2) covers recognisable conversational padding and AI-specific vocabulary. LOW (1) captures subtle indicators like tautological comments and generic boilerplate that require density to carry independent signal.
This horizontal bar chart decomposes the repository's raw synthetic code score by top-level directory, allowing you to pinpoint precisely which modules or components carry the highest AI authorship density. Directories with disproportionately high scores relative to their size warrant targeted manual review: concentrated AI signatures often trace back to mass-generated configuration layers, auto-ported test suites, LLM-scaffolded boilerplate classes, or entire subsystems authored under heavy copilot assistance. Use this view to prioritise your human code-review effort.
The scanner identified 2218 distinct pattern matches across 15 syntactic categories. Each entry below represents a discrete location in the source code where the engine recorded a statistically significant AI authorship indicator. Expand any category row to inspect the individual file paths, line numbers, code snippets, and the lexical context (CODE, COMMENT, or STRING) in which each match was detected.
Reading the findings table: The Severity column indicates the diagnostic confidence level (CRITICAL / HIGH / MEDIUM / LOW). The Context column identifies whether the match occurred inside executable code, an inline comment, or a string literal — comment-context matches receive a ×1.5 weight because LLMs systematically over-annotate. The ⚡ bolt icon marks clustered matches: three or more patterns within a 10-line window, each receiving an additional ×1.5 density multiplier as dense clusters constitute far stronger evidence of synthetic authorship than isolated hits.
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| LOW | linPEAS/builder/README.md | 41 | ## How to add new modules | COMMENT |
| LOW | …der/linpeas_parts/2_container/2_List_mounted_tokens.sh | 1 | # Title: Container - List mounted tokens | COMMENT |
| LOW | …r/linpeas_parts/2_container/7_RW_bind_mounts_nosuid.sh | 1 | # Title: Container - Writable bind mounts without nosuid (SUID risk) | COMMENT |
| LOW | …inpeas_parts/2_container/4_Docker_container_details.sh | 1 | # Title: Container - Docker Container details | COMMENT |
| LOW | …ilder/linpeas_parts/2_container/3_Container_details.sh | 1 | # Title: Container - Container details | COMMENT |
| LOW | …builder/linpeas_parts/2_container/1_Container_tools.sh | 1 | # Title: Container - Container Tools | COMMENT |
| LOW | …builder/linpeas_parts/2_container/1_Container_tools.sh | 21 | # - Privileged tool exploitation | COMMENT |
| LOW | …lder/linpeas_parts/2_container/5_Container_breakout.sh | 1 | # Title: Container - Container & breakout enumeration | COMMENT |
| LOW | …npeas_parts/7_software_information/Browser_profiles.sh | 1 | # Title: Software Information - Browser Profiles | COMMENT |
| LOW | …ilder/linpeas_parts/7_software_information/Logstash.sh | 1 | # Title: Software Information - Logstash | COMMENT |
| LOW | …S/builder/linpeas_parts/7_software_information/Pamd.sh | 1 | # Title: Software Information - Pam.d | COMMENT |
| LOW | …r/linpeas_parts/7_software_information/Apache_nginx.sh | 1 | # Title: Software Information - Apache-Nginx | COMMENT |
| LOW | …ilder/linpeas_parts/7_software_information/Kerberos.sh | 1 | # Title: Software Information - Kerberos | COMMENT |
| LOW | …r/linpeas_parts/7_software_information/PHP_Sessions.sh | 1 | # Title: Software Information - PHP Sessions | COMMENT |
| LOW | …peas_parts/7_software_information/1_Useful_software.sh | 1 | # Title: Software Information - Useful Software | COMMENT |
| LOW | …er/linpeas_parts/7_software_information/2_Compilers.sh | 1 | # Title: Software Information - Compilers | COMMENT |
| LOW | …npeas_parts/7_software_information/Cached_AD_hashes.sh | 1 | # Title: Software Information - Cached AD Hashes | COMMENT |
| LOW | …lder/linpeas_parts/7_software_information/Vault_ssh.sh | 1 | # Title: Software Information - Vault-ssh | COMMENT |
| LOW | …der/linpeas_parts/7_software_information/Kcpassword.sh | 1 | # Title: Software Information - kcpassword | COMMENT |
| LOW | …AS/builder/linpeas_parts/7_software_information/Ssh.sh | 1 | # Title: Software Information - ssh files | COMMENT |
| LOW | …builder/linpeas_parts/7_software_information/Splunk.sh | 1 | # Title: Software Information - Splunk | COMMENT |
| LOW | …lder/linpeas_parts/7_software_information/Log4shell.sh | 1 | # Title: Software Information - Searching Log4Shell vulnerable libraries | COMMENT |
| LOW | …/builder/linpeas_parts/7_software_information/Mysql.sh | 1 | # Title: Software Information - Mysql | COMMENT |
| LOW | …uilder/linpeas_parts/7_software_information/FreeIPA.sh | 1 | # Title: Software Information - FreeIPA | COMMENT |
| LOW | …ilder/linpeas_parts/7_software_information/Awsvault.sh | 1 | # Title: Software Information - Check aws-vault | COMMENT |
| LOW | …der/linpeas_parts/7_software_information/Postgresql.sh | 1 | # Title: Software Information - PostgreSQL | COMMENT |
| LOW | …arts/7_software_information/PackageKit_Pack2TheRoot.sh | 1 | # Title: Software Information - PackageKit Pack2TheRoot (CVE-2026-41651) | COMMENT |
| LOW | …linpeas_parts/7_software_information/Extra_software.sh | 1 | # Title: Software Information - Extra sotftare | COMMENT |
| LOW | …der/linpeas_parts/7_software_information/Containerd.sh | 1 | # Title: Software Information - containerd installed | COMMENT |
| LOW | …inpeas_parts/7_software_information/Screen_sessions.sh | 1 | # Title: Software Information - Screen sessions | COMMENT |
| LOW | …uilder/linpeas_parts/7_software_information/YubiKey.sh | 1 | # Title: Software Information - YubiKey athentication | COMMENT |
| LOW | …S/builder/linpeas_parts/7_software_information/Tmux.sh | 1 | # Title: Software Information - Tmux | COMMENT |
| LOW | …S/builder/linpeas_parts/7_software_information/Runc.sh | 1 | # Title: Software Information - Runc | COMMENT |
| LOW | …builder/linpeas_parts/7_software_information/Gitlab.sh | 1 | # Title: Software Information - Gitlab | COMMENT |
| LOW | …uilder/linpeas_parts/7_software_information/PGP_GPG.sh | 1 | # Title: Software Information - PGP-GPG | COMMENT |
| LOW | …uilder/linpeas_parts/7_software_information/Dovecot.sh | 1 | # Title: Software Information - Dovecot | COMMENT |
| LOW | …builder/linpeas_parts/7_software_information/Docker.sh | 1 | # Title: Software Information - Docker | COMMENT |
| LOW | …S/builder/linpeas_parts/7_software_information/SKey.sh | 1 | # Title: Software Information - S/Key athentication | COMMENT |
| LOW | …ts/7_software_information/Postgresql_Event_Triggers.sh | 1 | # Title: Software Information - PostgreSQL Event Triggers | COMMENT |
| LOW | …oftware_information/3_Macos_writable_installed_apps.sh | 1 | # Title: Software Information - MacOS writable Installed Applications | COMMENT |
| LOW | …cs_crons_timers_srvcs_sockets/17_Deleted_open_files.sh | 1 | # Title: Processes & Cron & Services & Timers - Deleted open files | COMMENT |
| LOW | …_crons_timers_srvcs_sockets/16_Crontab_UI_misconfig.sh | 1 | # Title: Processes & Cron & Services & Timers - Crontab UI (root) Misconfiguration | COMMENT |
| LOW | …4_procs_crons_timers_srvcs_sockets/1_List_processes.sh | 1 | # Title: Processes & Cron & Services & Timers - List processes | COMMENT |
| LOW | …procs_crons_timers_srvcs_sockets/15_Rcommands_trust.sh | 1 | # Title: Processes & Cron & Services & Timers - Legacy r-commands and host-based trust | COMMENT |
| LOW | …4_procs_crons_timers_srvcs_sockets/14_DBus_analysis.sh | 1 | # Title: Processes & Cron & Services & Timers - D-Bus Analysis | COMMENT |
| LOW | …/4_procs_crons_timers_srvcs_sockets/12_Socket_files.sh | 1 | # Title: Processes & Cron & Services & Timers - Socket Files Analysis | COMMENT |
| LOW | …rons_timers_srvcs_sockets/13_Unix_sockets_listening.sh | 1 | # Title: Processes & Cron & Services & Timers - Unix Sockets Analysis | COMMENT |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/10_Services.sh | 1 | # Title: Processes & Cron & Services & Timers - Services and Service Files | COMMENT |
| LOW | …imers_srvcs_sockets/5_Files_open_process_other_user.sh | 1 | # Title: Processes & Cron & Services & Timers - Files opened by processes belonging to other users | COMMENT |
| LOW | …_timers_srvcs_sockets/8_Macos_launch_agents_daemons.sh | 1 | # Title: Processes & Cron & Services & Timers - Third party LaunchAgents & LaunchDemons | COMMENT |
| LOW | …s_crons_timers_srvcs_sockets/6_Different_procs_1min.sh | 1 | # Title: Processes & Cron & Services & Timers - Different processes 1 min | COMMENT |
| LOW | …parts/4_procs_crons_timers_srvcs_sockets/11_Systemd.sh | 1 | # Title: System Information - Systemd | COMMENT |
| LOW | …/4_procs_crons_timers_srvcs_sockets/9_System_timers.sh | 1 | # Title: Processes & Cron & Services & Timers - System Timers | COMMENT |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/7_Cron_jobs.sh | 1 | # Title: Processes & Cron & Services & Timers - Cron jobs and Wildcards | COMMENT |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/7_Cron_jobs.sh | 161 | COMMENT | |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/7_Cron_jobs.sh | 181 | COMMENT | |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/7_Cron_jobs.sh | 201 | COMMENT | |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/7_Cron_jobs.sh | 241 | # [ -z "$job_id" ] && continue | COMMENT |
| LOW | …crons_timers_srvcs_sockets/2_Process_cred_in_memory.sh | 1 | # Title: Processes & Cron & Services & Timers - Processes with credentials inside memory | COMMENT |
| LOW | …crons_timers_srvcs_sockets/3_Process_binaries_perms.sh | 1 | # Title: Processes & Cron & Services & Timers - Process binaries permissions | COMMENT |
| 2012 more matches not shown… | ||||
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| CRITICAL | …PEASexe/winPEAS/TaskScheduler/JetBrains.Annotations.cs | 624 | /// <c>System.Web.Mvc.Html.ChildActionExtensions.RenderAction(HtmlHelper, String)</c>. | COMMENT |
| CRITICAL | …PEASexe/winPEAS/TaskScheduler/JetBrains.Annotations.cs | 642 | /// <c>System.Web.Mvc.Html.ChildActionExtensions.RenderAction(HtmlHelper, String)</c>. | COMMENT |
| CRITICAL | …PEASexe/winPEAS/TaskScheduler/JetBrains.Annotations.cs | 661 | /// <c>System.Web.Mvc.Html.ChildActionExtensions.RenderAction(HtmlHelper, String, String)</c>. | COMMENT |
| CRITICAL | …PEASexe/winPEAS/TaskScheduler/JetBrains.Annotations.cs | 694 | /// <c>System.Web.Mvc.Html.RenderPartialExtensions.RenderPartial(HtmlHelper, String)</c>. | COMMENT |
| CRITICAL | …PEASexe/winPEAS/TaskScheduler/JetBrains.Annotations.cs | 708 | /// <c>System.Web.Mvc.Html.DisplayExtensions.DisplayForModel(HtmlHelper, String)</c>. | COMMENT |
| CRITICAL | …PEASexe/winPEAS/TaskScheduler/JetBrains.Annotations.cs | 716 | /// <c>System.Web.Mvc.Html.EditorExtensions.EditorForModel(HtmlHelper, String)</c>. | COMMENT |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| LOW | …/builder/linpeas_parts/7_software_information/Mysql.sh | 135 | # Check if MySQL is running as root and if the version is either 4.x or 5.x | COMMENT |
| LOW | …4_procs_crons_timers_srvcs_sockets/1_List_processes.sh | 182 | # Check if we can access the FD but not the target file | COMMENT |
| LOW | …/4_procs_crons_timers_srvcs_sockets/12_Socket_files.sh | 39 | # Check if socket file is writable (following symlinks) | COMMENT |
| LOW | …/4_procs_crons_timers_srvcs_sockets/12_Socket_files.sh | 59 | # Check if executable is writable (following symlinks) | COMMENT |
| LOW | …/4_procs_crons_timers_srvcs_sockets/12_Socket_files.sh | 89 | # Check if listener path is writable (following symlinks) | COMMENT |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/10_Services.sh | 25 | # Check if service runs with elevated privileges | COMMENT |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/10_Services.sh | 76 | # Check if service file is writable (following symlinks) | COMMENT |
| LOW | …_timers_srvcs_sockets/8_Macos_launch_agents_daemons.sh | 80 | # Check if plist is writable | COMMENT |
| LOW | …_timers_srvcs_sockets/8_Macos_launch_agents_daemons.sh | 92 | # Check if program is writable | COMMENT |
| LOW | …/4_procs_crons_timers_srvcs_sockets/9_System_timers.sh | 28 | # Check if the service runs with elevated privileges | COMMENT |
| LOW | …/4_procs_crons_timers_srvcs_sockets/9_System_timers.sh | 71 | # Check if timer file is writable (following symlinks) | COMMENT |
| LOW | …/4_procs_crons_timers_srvcs_sockets/9_System_timers.sh | 120 | # Check if timer file is writable | COMMENT |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/7_Cron_jobs.sh | 51 | # Check if it's a regular file | COMMENT |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/7_Cron_jobs.sh | 54 | # Check if it's writable and executable | COMMENT |
| LOW | …arts/4_procs_crons_timers_srvcs_sockets/7_Cron_jobs.sh | 162 | # # Check if the file is writable | COMMENT |
| LOW | …crons_timers_srvcs_sockets/3_Process_binaries_perms.sh | 31 | # Check if binary is writable | COMMENT |
| LOW | …imers_srvcs_sockets/4_Processes_PPID_different_user.sh | 55 | # Check if users are different and PPID user is not root | COMMENT |
| LOW | …der/linpeas_parts/linpeas_base/1_check_network_jobs.sh | 89 | #Check if IP and Netmask are correct and the use nc to find hosts. By default check ports: 22 80 443 445 3389 | COMMENT |
| LOW | …der/linpeas_parts/linpeas_base/1_check_network_jobs.sh | 158 | #Check if IP and Netmask are correct and the use fping or ping to find hosts | COMMENT |
| LOW | …der/linpeas_parts/linpeas_base/1_check_network_jobs.sh | 249 | #Check if LOCAL_PORT is a number | COMMENT |
| LOW | …der/linpeas_parts/linpeas_base/1_check_network_jobs.sh | 254 | #Check if REMOTE_PORT is a number | COMMENT |
| LOW | …AS/builder/linpeas_parts/6_users_information/9_Doas.sh | 46 | # Check if doas is working | COMMENT |
| LOW | …lder/linpeas_parts/8_interesting_perms_files/1_SUID.sh | 67 | if [ ${#sline_first} -gt 2 ] && command -v "$sline_first" 2>/dev/null | grep -q '/' && echo "$sline_fi | CODE |
| LOW | …lder/linpeas_parts/8_interesting_perms_files/2_SGID.sh | 61 | if [ ${#sline_first} -gt 2 ] && command -v "$sline_first" 2>/dev/null | grep -q '/'; then #Check if ex | CODE |
| LOW | …der/linpeas_parts/5_network_information/9_Inetdconf.sh | 31 | # Check if inetd is installed | COMMENT |
| LOW | …der/linpeas_parts/5_network_information/9_Inetdconf.sh | 37 | # Check if inetd is running | COMMENT |
| LOW | …der/linpeas_parts/5_network_information/9_Inetdconf.sh | 71 | # Check if xinetd is installed | COMMENT |
| LOW | …der/linpeas_parts/5_network_information/9_Inetdconf.sh | 77 | # Check if xinetd is running | COMMENT |
| LOW | …der/linpeas_parts/5_network_information/9_Inetdconf.sh | 106 | # Check if service is enabled | COMMENT |
| LOW | …lder/linpeas_parts/5_network_information/8_Iptables.sh | 31 | # Check if iptables is available | COMMENT |
| LOW | …lder/linpeas_parts/5_network_information/8_Iptables.sh | 37 | # Check if we have permission to list rules | COMMENT |
| LOW | …lder/linpeas_parts/5_network_information/8_Iptables.sh | 74 | # Check if nft is available | COMMENT |
| LOW | …lder/linpeas_parts/5_network_information/8_Iptables.sh | 80 | # Check if we have permission to list rules | COMMENT |
| LOW | …lder/linpeas_parts/5_network_information/8_Iptables.sh | 110 | # Check if firewall-cmd is available | COMMENT |
| LOW | …lder/linpeas_parts/5_network_information/8_Iptables.sh | 116 | # Check if firewalld is running | COMMENT |
| LOW | …lder/linpeas_parts/5_network_information/8_Iptables.sh | 150 | # Check if ufw is available | COMMENT |
| LOW | …lder/linpeas_parts/5_network_information/8_Iptables.sh | 156 | # Check if UFW is running | COMMENT |
| LOW | linPEAS/builder/src/linpeasModule.py | 177 | # Check if the indicated dependencies are actually being used | COMMENT |
| LOW | linPEAS/builder/src/linpeasModule.py | 199 | # Check if all variables are correctly defined | COMMENT |
| LOW | linPEAS/builder/src/linpeasModule.py | 231 | # Check if other object is an instance of LinpeasModule | COMMENT |
| LOW | linPEAS/builder/src/linpeasModule.py | 252 | # Check if item is already a LinpeasModule object. | COMMENT |
| LOW | linPEAS/builder/src/linpeasBaseBuilder.py | 156 | sorted_funcs.index(d_func) # Check if it's there | CODE |
| LOW | linPEAS/builder/src/linpeasBaseBuilder.py | 195 | sorted_vars.index(d_var) # Check if it's there | CODE |
| LOW | …/winPEASexe/winPEAS/Info/WindowsCreds/AppCmd/AppCmd.cs | 8 | # Check if appcmd.exe exists | COMMENT |
| LOW | …/winPEASexe/winPEAS/Info/WindowsCreds/AppCmd/AppCmd.cs | 34 | # Check if credentials exists | COMMENT |
| LOW⚡ | …/winPEASexe/winPEAS/Info/WindowsCreds/AppCmd/AppCmd.cs | 55 | # Check if credentials exists | COMMENT |
| LOW⚡ | …/winPEASexe/winPEAS/Info/WindowsCreds/AppCmd/AppCmd.cs | 62 | # Check if any passwords were found | COMMENT |
| LOW⚡ | …/winPEASexe/winPEAS/Info/WindowsCreds/AppCmd/AppCmd.cs | 64 | # Display results in list view that can feed into the pipeline | COMMENT |
| LOW | build_lists/sensitive_files.yaml | 123 | check_extra_path: "" #Check if the found files are in a specific path (only linpeas) | CODE |
| LOW | .github/workflows/artifacts_cleanup.yml | 14 | expire-in: 1days # Set this to 0 to delete all artifacts | CODE |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| MEDIUM | …ASexe/winPEAS/Info/NetworkInfo/InternetConnectivity.cs | 10 | // ─────────────────────────────────────────────────────────────── | COMMENT |
| MEDIUM | …ASexe/winPEAS/Info/NetworkInfo/InternetConnectivity.cs | 12 | // ─────────────────────────────────────────────────────────────── | COMMENT |
| MEDIUM | …ASexe/winPEAS/Info/NetworkInfo/InternetConnectivity.cs | 33 | // ─────────────────────────────────────────────────────────────── | COMMENT |
| MEDIUM | …ASexe/winPEAS/Info/NetworkInfo/InternetConnectivity.cs | 35 | // ─────────────────────────────────────────────────────────────── | COMMENT |
| MEDIUM | …ASexe/winPEAS/Info/NetworkInfo/InternetConnectivity.cs | 55 | // ─── Helpers ─────────────────────────────────────────────── | COMMENT |
| MEDIUM | …ASexe/winPEAS/Info/NetworkInfo/InternetConnectivity.cs | 159 | // ─── Main entry ─────────────────────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 13 | # ─── Section 1: System Information ──────────────────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 29 | # ─── Section 2: Container ───────────────────────────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 36 | # ─── Section 3: Cloud ───────────────────────────────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 51 | # ─── Section 4: Processes / Crons / Timers / Services / Sockets ─────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 69 | # ─── Section 5: Network Information ─────────────────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 81 | # ─── Section 6: Users Information ───────────────────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 100 | # ─── Section 7: Software Information ────────────────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 132 | # ─── Section 8: Interesting Permissions / Files ──────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 150 | # ─── Section 9: Interesting Files ───────────────────────────────────────── | COMMENT |
| MEDIUM | scripts/add_mitre_tags.py | 180 | # ─── Section 10: API Keys Regex ─────────────────────────────────────────── | COMMENT |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| LOW⚡ | linPEAS/tests/test_builder.py | 24 | def test_small_build_creates_executable(self): | CODE |
| LOW⚡ | linPEAS/tests/test_builder.py | 32 | def test_include_exclude_modules(self): | CODE |
| LOW⚡ | linPEAS/tests/test_builder.py | 40 | def test_exclude_matches_module_ids_case_insensitively(self): | CODE |
| LOW | linPEAS/tests/test_builder.py | 57 | def test_copyfail_python_probe_removes_temp_script(self): | CODE |
| LOW | linPEAS/tests/test_builder.py | 100 | def test_threads_flag_present_in_getopts(self): | CODE |
| LOW | linPEAS/tests/test_builder.py | 119 | def test_threads_flag_present_in_help_text(self): | CODE |
| LOW | linPEAS/tests/test_builder.py | 128 | def test_mitre_flag_present_in_getopts(self): | CODE |
| LOW | linPEAS/tests/test_builder.py | 144 | def test_mitre_flag_present_in_help_text(self): | CODE |
| LOW | linPEAS/tests/test_builder.py | 153 | def test_mitre_filter_function_present(self): | CODE |
| LOW | linPEAS/tests/test_builder.py | 182 | def test_mitre_parent_filter_matches_subtechnique(self): | CODE |
| LOW | linPEAS/tests/test_builder.py | 188 | def test_mitre_subtechnique_filter_does_not_match_parent(self): | CODE |
| LOW | linPEAS/tests/test_modules_metadata.py | 31 | def test_check_module_id_matches_filename(self): | CODE |
| LOW | linPEAS/tests/test_modules_metadata.py | 48 | def test_module_ids_are_unique(self): | CODE |
| LOW | linPEAS/tests/test_modules_metadata.py | 56 | def test_module_shell_snippets_are_syntactically_valid(self): | CODE |
| LOW | linPEAS/tests/test_modules_metadata.py | 68 | def test_declared_function_dependencies_exist(self): | CODE |
| LOW | linPEAS/tests/test_modules_metadata.py | 83 | def test_declared_global_variable_dependencies_exist(self): | CODE |
| LOW | linPEAS/tests/test_modules_metadata.py | 104 | def test_sudo_l_check_is_bounded_for_non_interactive_runs(self): | CODE |
| LOW | linPEAS/builder/src/linpeasBuilder.py | 395 | def __generate_regexes_search(self) -> str: | CODE |
| LOW | winPEAS/winPEASexe/winPEAS/TaskScheduler/TaskService.cs | 1025 | private static class ConnectionDataManager | CODE |
| LOW | build_lists/update_windows_version_defs.py | 344 | def fetch_msrc_update_catalog(*, timeout: int, retries: int) -> list[dict[str, Any]]: | CODE |
| LOW | build_lists/update_windows_version_defs.py | 359 | def product_map_from_document(document: dict[str, Any]) -> dict[str, str]: | CODE |
| LOW | build_lists/update_windows_version_defs.py | 372 | def extract_msrc_entries_from_document(document: dict[str, Any]) -> list[RawEntry]: | CODE |
| LOW | build_lists/update_windows_version_defs.py | 455 | def extract_exploit_ids_from_feed(payload: bytes, *, year: int) -> set[str]: | CODE |
| LOW | metasploit/peass.rb | 337 | function DecryptStringFromBytesAes([String] $key, [String] $iv, [String] $encrypted) { | CODE |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| LOW | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 54 | except Exception: | CODE |
| LOW | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 64 | except Exception: | CODE |
| LOW | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 81 | except Exception: | CODE |
| LOW | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 115 | except Exception as e: | CODE |
| LOW | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 154 | except Exception: | CODE |
| LOW⚡ | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 208 | except Exception as e: | CODE |
| LOW⚡ | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 213 | except Exception: | CODE |
| LOW⚡ | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 220 | except Exception: | CODE |
| LOW⚡ | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 227 | except Exception: | CODE |
| LOW⚡ | …nPEAS/builder/linpeas_parts/functions/checkCopyFail.sh | 233 | except Exception: | CODE |
| MEDIUM | parsers/json2pdf.py | 159 | print("Error: Please pass the peas.json file and the path to save the pdf\njson2pdf.py <json_file> <pdf_file.pdf | CODE |
| MEDIUM | parsers/json2html.py | 344 | print("Error: Please pass the peas.json file and the path to save the html\npeas2html.py <json_file.json> <HTML_ | CODE |
| MEDIUM | parsers/peas2json.py | 184 | print("Error: Please pass the peas.out file and the path to save the json\npeas2json.py <output_file> <json_file | CODE |
| MEDIUM | build_lists/download_regexes.py | 21 | print("Error: Unable to download the regexes file.") | CODE |
| LOW | .github/workflows/chack-agent-pr-triage.yml | 195 | except Exception: | CODE |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| MEDIUM | .github/workflows/CI-master_tests.yml | 487 | # Create the release | COMMENT |
| MEDIUM⚡ | metasploit/peass.rb | 353 | # Create a RijndaelManaged object | COMMENT |
| MEDIUM⚡ | metasploit/peass.rb | 362 | # Create an encryptor to perform the stream transform. | COMMENT |
| MEDIUM⚡ | metasploit/peass.rb | 365 | # Create the streams used for encryption. | COMMENT |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| HIGH | …AS/winPEASexe/winPEAS/Properties/Resources.Designer.cs | 3 | // This code was generated by a tool. | COMMENT |
| HIGH | …PEASexe/winPEAS/3rdParty/AlphaFS/Resources.Designer.cs | 3 | // This code was generated by a tool. | COMMENT |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| LOW | linPEAS/builder/src/linpeasModule.py | 9 | CODE | |
| LOW | linPEAS/builder/src/linpeasBuilder.py | 163 | CODE | |
| LOW | linPEAS/builder/src/linpeasBuilder.py | 250 | CODE | |
| LOW | linPEAS/builder/src/linpeasBaseBuilder.py | 29 | CODE | |
| LOW | linPEAS/builder/src/linpeasBaseBuilder.py | 144 | CODE | |
| LOW | linPEAS/builder/src/linpeasBaseBuilder.py | 183 | CODE | |
| LOW | parsers/json2pdf.py | 72 | CODE | |
| LOW | parsers/json2html.py | 53 | CODE | |
| LOW | parsers/peas2json.py | 48 | CODE | |
| LOW | parsers/peas2json.py | 104 | CODE | |
| LOW | build_lists/update_windows_version_defs.py | 158 | CODE | |
| LOW | build_lists/update_windows_version_defs.py | 372 | CODE | |
| LOW | build_lists/update_windows_version_defs.py | 533 | CODE |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| HIGH | linPEAS/tests/test_builder.py | 169 | f'source "{base_file}" >/dev/null 2>&1 || true; ' | CODE |
| HIGH | linPEAS/builder/src/linpeasBuilder.py | 341 | os.system(f"cd /tmp; tar -xvzf /tmp/bin_builder 2> /dev/null; rm /tmp/bin_builder; mv {tar_gz} /tmp/bin_buil | CODE |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| LOW | linPEAS/tests/test_builder.py | 1 | CODE | |
| LOW | linPEAS/builder/linpeas_builder.py | 4 | CODE | |
| LOW | linPEAS/builder/linpeas_builder.py | 4 | CODE | |
| LOW | linPEAS/builder/src/linpeasBuilder.py | 5 | CODE | |
| LOW | parsers/json2pdf.py | 5 | CODE | |
| LOW | build_lists/update_windows_version_defs.py | 3 | CODE | |
| LOW | scripts/add_mitre_tags.py | 7 | CODE |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| MEDIUM | winPEAS/winPEASexe/winPEAS/Checks/ApplicationsInfo.cs | 105 | Beaprint.LinkPrint("https://book.hacktricks.wiki/en/windows-hardening/windows-local-privilege-escalation | CODE |
| MEDIUM | winPEAS/winPEASexe/winPEAS/Checks/ServicesInfo.cs | 131 | Beaprint.LinkPrint("https://book.hacktricks.wiki/en/windows-hardening/windows-local-privilege-escalation | CODE |
| MEDIUM | winPEAS/winPEASexe/winPEAS/Checks/ServicesInfo.cs | 168 | Beaprint.LinkPrint("https://book.hacktricks.wiki/en/windows-hardening/windows-local-privilege-escalation | CODE |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| MEDIUM | …esystem/Native Methods/NativeMethods.FileManagement.cs | 156 | /// The default marshaling for bool is four bytes (to allow seamless integration with BOOL return values). | COMMENT |
| MEDIUM | …esystem/Native Methods/NativeMethods.FileManagement.cs | 175 | /// The default marshaling for bool is four bytes (to allow seamless integration with BOOL return values). | COMMENT |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| MEDIUM | …lder/linpeas_parts/functions/enumerateDockerSockets.sh | 5 | # Description: Search interesting container runtime, orchestration, and build sockets that could expose high-impact APIs | COMMENT |
| Severity | File | Line | Snippet | Context |
|---|---|---|---|---|
| LOW | linPEAS/builder/src/fileRecord.py | 4 | CODE |