SeDebugPrivilege - Dump hashes
Severity:
Exploit SeDebugPrivilege
Debug programs right
C:\irix> **whoami /priv**
PRIVILEGES INFORMATION
----------------------
Privilege Name Description State
========================================= ================================================================== ========
**SeDebugPrivilege** Debug programs Disabled
SeChangeNotifyPrivilege Bypass traverse checking Enabled
SeIncreaseWorkingSetPrivilege Increase a process working set Dump memory - ProcDump
ProcDumpAccess Hashed - Mimikatz
MimikatzDump Memory - Manual

Remote Code Execution as SYSTEM

Last updated