Skip to content
← LibraryTechnique entry
L-PATH-HIJACKPrivilege Escalation

$PATH Hijacking

Misconfigured sudo / cron / service with a relative PATH that includes a writable dir — drop a binary named the same as a called command.

§ Where this technique fits

L-PATH-HIJACK is catalogued under the Privilege Escalation tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.