Rekursif: Jurnal Informatika
Vol 14 No 1 (2026): Volume 14 Nomor 1 Maret 2026

UJI PRIVILEGE ESCALATION PADA LAB VULNHUB LIN.SECURITY MENGGUNAKAN TACTIC FRAMEWORK PRIVILEGE ESCALATION MITRE ATT&CK DENGAN METODE INFORMATION SYSTEM SECURITY ASSESSMENT FRAMEWORK (ISSAF)

Putra, Muhammad Willdhan Arya (Unknown)
Coastera, Funny Farady (Unknown)
Putri, Tiara Eka (Unknown)



Article Info

Publish Date
27 Mar 2026

Abstract

This study aims to identify and evaluate privilege escalation techniques on Linux kernel-based operating systems using the Information System Security Assessment Framework (ISSAF) methodology and MITRE ATT&CK tactics. The research was conducted in the vulnerable VulnHub Lin.Security lab. Phases included planning (VirtualBox configuration), assessment (system enumeration and testing of 7 MITRE ATT&CK tactics: Abuse Elevation Control Mechanism, Account Manipulation, Create or Modify System Process, Escape to Host, Event Triggered Execution, Exploitation for Privilege Escalation, Hijack Execution Flow), and reporting. Results showed all seven tactics were successfully exploited in the lab environment, revealing vulnerabilities such as SetUID/SetGID misconfiguration, sudo issues, SSH key manipulation, systemd misuse, docker SUID exploitation, shell configuration file vulnerabilities, kernel exploits (PwnKit), and LD_PRELOAD hijacking. The main conclusion is that privilege escalation vulnerabilities in Linux systems can be exploited using MITRE ATT&CK tactics, emphasizing the importance of regular security audits and updates for risk mitigation.

Copyrights © 2026






Journal Info

Abbrev

rekursif

Publisher

Subject

Computer Science & IT Control & Systems Engineering Electrical & Electronics Engineering

Description

Rekursif adalah jurnal ilmiah yang diterbitkan oleh Program Studi Informatika, Fakultas Teknik, Universitas Bengkulu. Rekursif menerima artikel ilmiah dengan topik; Informatika, Sistem Informasi, dan Teknologi Informasi dari peneliti, dosen, guru, dan mahasiswa. Rekursif diterbitakan secara berkala ...