Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
rootOS — macOS 权限提升助手 | Kitploit
工具/GitHubGitHub/thehappydinoa/rootos
权限提升漏洞分析漏洞利用
GitHubthehappydinoa/rootos

rootOS

macOS 权限提升助手

查看仓库
147271年前Kitploit 审核通过

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

rootOS

尝试利用多个CVE获取sudo或root访问权限。所有漏洞利用的最终目标是将ALL ALL=(ALL) NOPASSWD: ALL添加到/etc/sudoers中,允许任何用户运行sudo命令。

screenshot

运行

root@kitploit:~
python root.py

漏洞利用

名称CVE日期链接
ARDAgentCVE-2008-283006/23/2008https://nvd.nist.gov/vuln/detail/CVE-2008-2830
DYLD_PRINT_TO_FILECVE-2015-376008/16/2015https://nvd.nist.gov/vuln/detail/CVE-2015-3760 https://twitter.com/i0n1c/status/623727538234368000
MallocLogCVE-2015-58890/09/2015https://nvd.nist.gov/vuln/detail/CVE-2015-5889
Proxifier SanitizeCVE-2017-764304/14/2017https://nvd.nist.gov/vuln/detail/CVE-2017-7643
Sera Local Pass10/31/2017https://m4.rkw.io/blog/cve201715918-sera-12-local-root-privesc-and-password-disclosure.html
NoPassCVE-2017-1387211/29/2017https://nvd.nist.gov/vuln/detail/CVE-2017-13872 https://objective-see.com/blog/blog_0x24.html
KeyStealCVE-2019-852606/01/2019https://github.com/LinusHenze/Keysteal
AppleScript Dynamic Phishinghttps://github.com/thehappydinoa/rootOS/blob/master/apps.json
Sudo Piggybackhttps://www.n00py.io/2016/10/privilege-escalation-on-os-x-without-exploits/

动态钓鱼

phishing

请注意动态图标和提示框

其他漏洞利用

  • amanszpapaya/MacPer

许可证

MIT

下载工具