Windows Privilege Escalation Resources


Exploits

  • BHaFSec's Window Privilege Escalation [This is GOLD] -  http://www.bhafsec.com/wiki/index.php/Windows_Privilege_Escalation
  • DeleteExpiredTaskAfter -  https://www.exploit-db.com/exploits/38200/

Tools

  • PowerUp - https://github.com/PowerShellMafia/PowerSploit/tree/master/Privesc
  • Sysinternals Suite - https://docs.microsoft.com/en-us/sysinternals/downloads/sysinternals-suite
  • FolderPermissions.ps1 - www.greyhathacker.net/docs/folderperm.zip
  • SubinACL - https://www.microsoft.com/en-us/download/confirmation.aspx?id=23510
  • Windows-privesc-check - https://github.com/pentestmonkey/windows-privesc-check/archive/master.zip
  • JollyFrog's Root Loot Script - https://pastebin.com/sUuqBGHk
  • Windows Exploit Suggester - https://github.com/GDSSecurity/Windows-Exploit-Suggester


Tutorials

  • Windows Privilege Escalation Fundamentals - http://www.fuzzysecurity.com/tutorials/16.html
  • Windows WMIC Command Line - https://www.computerhope.com/wmic.htm
  • Windows PrivEsc By Weak Folder Permissions - http://www.greyhathacker.net/?p=738
  • Escalation Via Weak Service Permissions - http://travisaltman.com/windows-privilege-escalation-via-weak-service-permissions/
  • Windows PrivEsc Methods for Pentesters - https://pentest.blog/windows-privilege-escalation-methods-for-pentesters/
  • ATT&CK Privilege Escalation - https://attack.mitre.org/wiki/Privilege_Escalation
  • Privilege Escalation | To Shell and Back - https://www.toshellandback.com/2015/11/24/ms-priv-esc/
  • Automating Windows Privilege Escalation - http://resources.infosecinstitute.com/automating-windows-privilege-escalation/
  • Hot Potato - https://foxglovesecurity.com/2016/01/16/hot-potato/
  • Local Administrator Privileges - https://blog.netspi.com/windows-privilege-escalation-part-1-local-administrator-privileges/
  • Metasploit Unleashed - https://www.offensive-security.com/metasploit-unleashed/privilege-escalation/
  • Level Up! - Practical Windows PrivEsc - https://www.slideshare.net/jakx_/level-up-practical-windows-privilege-escalation

H2
H3
H4
3 columns
2 columns
1 column
Join the conversation now