Skip to content

A security research framework for analyzing, simulating, and detecting Linux persistence techniques, designed to support Blue Team detection, Red Team emulation in authorized labs, and Purple Team collaboration

Notifications You must be signed in to change notification settings

achnouri/Analyze_Linux_Persistence

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 

Repository files navigation

Linux Persistence Toolkit (linper)

Overview

Linux Persistence Toolkit (linper) is a Bash-based security research utility designed for penetration-testing labs and authorized red-team exercises.
It focuses on enumerating, testing, and cleaning persistence mechanisms commonly found on Linux systems.

The tool is primarily aimed at:

  • Defensive security testing
  • Red-team / blue-team labs
  • Post-exploitation research
  • Detection engineering validation


Legal & Ethical Notice :
This tool is intended only for educational purposes and authorized environments.


Features

  • Enumeration of persistence-capable binaries and services
  • Multiple persistence vectors (cron, systemd, shell init files, web roots)
  • Dry-run mode for safe inspection without system modification
  • Cleanup mode to remove artifacts created by the tool
  • Writable directory discovery for temporary files
  • Optional stealth-oriented modifications (for research scenarios)
  • Basic defensive control enumeration

Use Cases

  • Red-team training labs
  • Blue-team detection testing
  • Persistence awareness education
  • CTF challenge development
  • Post-exploitation methodology research

Requirements

  • Linux system
  • Bash
  • Standard GNU utilities (awk, grep, find, crontab, etc.)
  • Root privileges may be required for some techniques

Usage

bash linper.sh [options]

Installation

Clone the repository and ensure the script is executable:

git clone https://github.com/achnouri/Analyze_Linux_Persistence




About

A security research framework for analyzing, simulating, and detecting Linux persistence techniques, designed to support Blue Team detection, Red Team emulation in authorized labs, and Purple Team collaboration

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages