githubEdit

Service Escalation - Registry

What’s Service Escalation

Windows programs which run in background usually these service run with system privilege

if we can edit in Executable Path we can take a system privilege on this machine


Detection

Get-Acl -Path HKLM:\System\CurrentControlSet\Services\<ServiceName> | Format-List
## u can get service name using
Get-Service
2025-07-05 19_29_49-Kali Linux - VMware Workstation.png

Exploitation

we create shared folder from kali to windows to allow us to move files smoothly

then we will edit in this file windows_service.c to addus on Admin group

  • windows_service.c

then compile file on linux and move it to windows

In windows vm

edit path of regsvc

then run service

2025-07-05 19_39_50-Kali Linux - VMware Workstation.png

Last updated