Useful Windows commands to help your way are Tasklist and sc.
Local privilege escalation in Windows have seen with driver services, like PML Driver, Epson and privilege escalation on a service.
Showing posts with label Privilege Escalation. Show all posts
Showing posts with label Privilege Escalation. Show all posts
Saturday, 19 September 2009
Tuesday, 15 September 2009
Random Musings - Day #259
Here's a novel way of using a system's toolset against them to escalate privileges, it's AT. There were a number of functions, programs and application that have weak permissions, e.g. ssdpsrv, netbt, scardsvr, upnphost, dnscache and dhcp that could make privilege escalation possible.
Power users privilege escalation is quite easy as there are a number of places the power user can install and write data. But note WFP (windows file protection) will generally try to stop you from doing this, so you have to force a reboot before WFP twigs.
Here are some differences between OSPF and RIP. OSPF being newer is obviously better!
Power users privilege escalation is quite easy as there are a number of places the power user can install and write data. But note WFP (windows file protection) will generally try to stop you from doing this, so you have to force a reboot before WFP twigs.
Here are some differences between OSPF and RIP. OSPF being newer is obviously better!
Monday, 30 July 2007
Privilege Escalation on all Windows
Whilst looking for potential privilege escalation vulnerability, I found this gem regarding to kernel exploitation:
Windows VDM Zero Page Race Condition Privilege Escalation (MS07-022; BID=23367; CVE-2007-1206)
Windows VDM Zero Page Race Condition Privilege Escalation (MS07-022; BID=23367; CVE-2007-1206)
Subscribe to:
Posts (Atom)