Domain Privilege Escalation
Last updated
Last updated
Ways of Locally Escalating Privileges on Windows box:
Missing patches
Automated deployment and AutoLogon passwords in clear text
AlwaysInstallElevated (Any user can run MSI as SYSTEM)
Misconfigured Services
DLL Hijacking and more
NTLM Relaying a.k.a. Won't Fix
Tools for complete coverage:
PowerUp:
Privesc:
winPEAS:
BeRoot:
FullPowers: Restore A Service Account's Privileges