GTFOBins
GTFOBins is a curated collection of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems. It documents legitimate program functions that may be abused for tasks such as escaping restricted shells, escalating privileges, or transferring files. The project is maintained by Emilio Pinna, Andrea Cardaci, and community contributors, and emphasizes 'living off the land' rather than exploiting vulnerabilities.
- ▪GTFOBins lists legitimate Unix-like executables that can be abused to bypass security restrictions.
- ▪The executables listed are not inherently vulnerable but can be misused in poorly configured environments.
- ▪The project supports post-exploitation activities like privilege escalation, file transfer, and shell spawning.
- ▪GTFOBins is a community-driven effort and includes a JSON API for integration and automation.
- ▪A similar project, LOLBAS, exists for Windows binaries with comparable objectives.
Story provenance
Source · retrieval · rights · ranking — open for full record
inspect →
Story provenance
Attribution is not the same as permission. This drawer separates discovery metadata, excerpts, WeSearch-generated summaries, reuse status, and whether the publisher receives the visit. Nothing here claims a legal grant the publisher has not made.
Record
| Original publisher | Gtfobins |
| Canonical URL | https://gtfobins.org/ |
| Publication time | Tue, 28 Apr 2026 06:27:39 +0000 |
| Retrieval time | 2026-04-28T06:53:41.085Z |
| Last seen | 2026-04-28T06:53:41.085Z |
| Headline source | Publisher (no WeSearch rewrite) |
| Excerpt source | publisher body |
| Excerpt method | First ~120 words (~800 chars) of extracted publisher body, fair-use limited. |
| Summary | WeSearch · cerebras-chat (WeSearch summarizer) |
| Summary source text | contentText |
| Citation coverage | Summary is a WeSearch-generated derivative; primary citation is the original publisher URL. |
| Cluster | None |
| Cluster logic | Not yet clustered, or no peer story found in the clustering window. |
| Ranking reason | Story pages are not engagement-ranked. Hub feeds use recency, with optional source-diversified chronological ordering (cap consecutive stories per source). No personalized ranking. |
| Publisher visit | Yes — open original |
| Substitutes article? | No — link-out required for full text |
Rights status (four layers)
WeSearch handling by dimension
| Indexing | May the item be indexed (stored, ranked, made findable)? | Allowed |
| Snippet | May a short excerpt of the publisher's text be shown? | Allowed |
| AI summary | May WeSearch generate its own short summary of the article? | Limited |
| Retrieval / RAG | May the content be exposed for third-party retrieval-augmented generation? | Not asserted |
| Model training | May the content be used to train AI models? | Not asserted |
| Commercial reuse | May the content be reused commercially? | Not permitted |
Basis: Derived from the published RSS/Atom feed. Contact: [email protected]. Reviewed: 2026-07-24.
Opening excerpt (first ~120 words) tap to expand
.github-corner:hover .octo-arm{animation:octocat-wave 560ms ease-in-out}@keyframes octocat-wave{0%,100%{transform:rotate(0)}20%,60%{transform:rotate(-25deg)}40%,80%{transform:rotate(10deg)}}@media (max-width:500px){.github-corner:hover .octo-arm{animation:none}.github-corner .octo-arm{animation:octocat-wave 560ms ease-in-out}} GTFOBins Sponsor Fork Star Sponsor Fork Star GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems. The project collects legitimate functions of Unix-like executables that can be abused to get the f**k break out restricted shells, escalate or maintain elevated privileges, transfer files, spawn bind and reverse shells, and facilitate other post-exploitation tasks.
…
Excerpt limited to ~120 words for fair-use compliance. The full article is at Gtfobins.