Interesting question, is this a UAC bypass? My first thought is no, because UIPI means you can't automate the interaction. Therefore, the only way to exploit it is if you could have just clicked OK in the UAC consent anyway.... right? (yes, I know UAC is not a supported boundary)https://twitter.com/harr0ey/status/1211075032400760832 …
-
-
Oops. You're right. Didn't realize UIPI also applies for SendInput too.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
-
I've just read about UIPI, do you think that this is a UIPI bypass or what?
-
Unlikely since you would have to already be in a process that is high-integrity to send the inputs. If you’re, say, a cobalt-strike beacon in a lower integrity process, you wouldn’t be able to click around procmon because it’s already high-integrity.
- Još 3 druga odgovora
Novi razgovor -
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.