Category: Post Exploitation

ACL abuse

acltoolkit: ACL abuse swiss-knife

acltoolkit ACL Toolkit is an ACL abuse swiss-knife. Install git clone https://github.com/zblurx/acltoolkit.git cd acltoolkit pip install . Use Commands get-objectacl   The get-objectacl will take a sAMAccountName, a name, a DN, or an objectSid as...

Windows privilege escalation

Crassus: Windows privilege escalation discovery tool

Crassus Windows privilege escalation discovery tool Why “Crassus”? Accenture made a tool called Spartacus, which finds DLL hijacking opportunities on Windows. Using Spartacus as a starting point, we created Crassus to extend Windows privilege escalation...