Access Token
Get a meterpreter session on the target and follow the below techinique:-
NOTE:- You need ImpersonatePrivilege to carry out this technique
#Access Token Impersonation
ATTACKDEFENSE\Administrator
account access token would provide elevated privileges
Listing tokens with this account, there can be additional available tokens
NT AUTHORITY\SYSTEM
can be impersonated, getting the privileges associated with its access token
In the case of no Delegation or Impersonation tokens found, the
Potato Attack
can be used to get or generate aNT AUTHORITY/SYSTEM
access token, impersonating it and obtain privileges associated to it.
Last updated