StatusISOLATED LAB
EgressBLOCKED?
Resume Session
RED TEAM OPS // PHASE 05

Privilege Escalation

Move from standard user to local admin on WIN01 by abusing the weaknesses seeded in Week 7.

Objectives

  1. 01Enumerate misconfigurations with a local privesc script.
  2. 02Exploit the intentionally weak service or GPP cpassword.
  3. 03Verify SeDebugPrivilege is now available.

ATT&CK techniques

T1068T1055T1078

Operator Checklist

operator@linux01 ~ /ops/privesc
[+] Found Groups.xml under SYSVOL policy 31B2F340...
[+] cpassword decrypted: Lab!Weak#2024
$

Command Reference