Another blog post!
PrintSpoofer - Abusing SeImpersonate on Windows 10 and Server 2019
https://itm4n.github.io/printspoofer-abusing-impersonate-privileges/ …
cc @jonasLykpic.twitter.com/VVIzLw06xA
-
-
Cool, from SERVICE->SYSTEM. So we have - rotten/juicy up to win 2016/10 1803 - RogueWinRM (only if winrm is not running) - Network Service with RPCSS token kidnapping - this one which is the most "useful" given that the spooler service/pipe is running by default
1 reply 10 retweets 45 likes
Replying to @decoder_it @itm4n
Thx for the summary, I was actually not aware of the issues with rotten tomato/potato/bean- so when itm4n wrote about the topic I was like: "Why no examples?" "Because no current working- do you know any?" "Umm, yarh?" He is good at pointing out what is interesting
1:40 PM - 2 May 2020
0 replies
0 retweets
2 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.