Windows Token Escalation

Windows local privilege escalation using SeDebug + SeImpersonate token copying. Use this skill when the user is doing Windows penetration testing, security assessments, or privilege escalation research and needs to escalate from Administrator to SYSTEM by copying tokens from privileged processes like lsass.exe, services.exe, or svchost.exe. Trigger this when users mention Windows privilege escalation, token manipulation, SeDebug, SeImpersonate, or need to gain SYSTEM access.

abelrguezr Updated

File contents

abelrguezr/hacktricks-skills/tree/main/skills/windows-hardening/windows-local-privilege-escalation/sedebug-+-seimpersonate-copy-token commit b6faec8929

Frequently asked questions

npx skillmds@latest add abelrguezr/windows-token-escalation