Support HackTricks and get benefits!
-
Do you work in a cybersecurity company? Do you want to see your company advertised in HackTricks? or do you want to have access to the latest version of the PEASS or download HackTricks in PDF? Check the SUBSCRIPTION PLANS!
-
Discover The PEASS Family, our collection of exclusive NFTs
-
Get the official PEASS & HackTricks swag
-
Join the 💬 Discord group or the telegram group or follow me on Twitter 🐦@carlospolopm.
-
Share your hacking tricks by submitting PRs to the hacktricks github repo.
powershell -ep bypass
. .\powerup.ps
Invoke-AllChecks
03/2019
- Current privileges
- Unquoted service paths
- Service executable permissions
- Service permissions
- %PATH% for hijackable DLL locations
- AlwaysInstallElevated registry key
- Autologon credentials in registry
- Modifidable registry autoruns and configs
- Modifiable schtask files/configs
- Unattended install files
- Encrypted web.config strings
- Encrypted application pool and virtual directory passwords
- Plaintext passwords in McAfee SiteList.xml
- Cached Group Policy Preferences .xml files
Support HackTricks and get benefits!
-
Do you work in a cybersecurity company? Do you want to see your company advertised in HackTricks? or do you want to have access to the latest version of the PEASS or download HackTricks in PDF? Check the SUBSCRIPTION PLANS!
-
Discover The PEASS Family, our collection of exclusive NFTs
-
Get the official PEASS & HackTricks swag
-
Join the 💬 Discord group or the telegram group or follow me on Twitter 🐦@carlospolopm.
-
Share your hacking tricks by submitting PRs to the hacktricks github repo.