16 lines
769 B
Markdown
16 lines
769 B
Markdown
`- Username and hostname
|
|
- Group memberships of the current user
|
|
- Existing users and groups
|
|
- Operating system, version and architecture
|
|
- Network information
|
|
- Installed applications
|
|
- Running processes`
|
|
|
|
<https://github.com/itm4n/PrivescCheck>
|
|
powershell -ep bypass -c ". .\PrivescCheck.ps1; Invoke-PrivescCheck -Extended -Report PrivescCheck_$($env:COMPUTERNAME) -Format TXT,HTML"
|
|
|
|
## Deep dives
|
|
- Host basics: [[Windows/Information Gathering/Username and Hostname]], [[Windows/Information Gathering/Network]], [[Windows/Information Gathering/History]]
|
|
- Local discovery: [[Windows/Information Gathering/Locate files]], [[Windows/Information Gathering/Installed Program]]
|
|
- Related tools and scans: [[Tools/nmap]], [[Tools/autorecon]], [[Windows/SMB/crackmapexec]]
|