Skip to content

Latest commit

 

History

History
8 lines (7 loc) · 307 Bytes

README.md

File metadata and controls

8 lines (7 loc) · 307 Bytes

admin-to-sys-privilege-escalation

This is a very simple privilege escalation technique, from admin to System. This is the same technique PSExec uses.

  1. Scan all processes for System token.
  2. Copy System token.
  3. Adjust Current token.
  4. Start process as System.
  5. Revert to self.