769 B
769 B
`- Username and hostname
- Group memberships of the current user
- Existing users and groups
- Operating system, version and architecture
- Network information
- Installed applications
- Running processes`
https://github.com/itm4n/PrivescCheck powershell -ep bypass -c ". .\PrivescCheck.ps1; Invoke-PrivescCheck -Extended -Report PrivescCheck_$($env:COMPUTERNAME) -Format TXT,HTML"
Deep dives
- Host basics: Windows/Information Gathering/Username and Hostname, Windows/Information Gathering/Network, Windows/Information Gathering/History
- Local discovery: Windows/Information Gathering/Locate files, Windows/Information Gathering/Installed Program
- Related tools and scans: Tools/nmap, Tools/autorecon, Windows/SMB/crackmapexec