A collection of read-only audit scripts for Linux and macOS systems. Check file permissions, find SUID/SGID binaries, review cron jobs, and monitor running processes for anomalies. Safe to run on production — no writes, no changes.
World-writable file and directory finder
SUID/SGID binary enumeration with known-safe whitelist
Cron job auditor (user and system crontabs)
Listening port → process mapper
Sudoers file parser and privilege escalation risk score