NetManTrigger. 基于 @itm4n 研究成果的本地提权实现。该工具通过劫持 Windows Server 上 NetMan 服务缺失的 wlanapi.dll 进行攻击。它利用系统 %PATH% 环境变量中存在可写目录的漏洞加载恶意载荷,从而实现从标准用户到 SYSTEM 的权限提升。

github.com/Byxs20/NetManTrigger

Vaya's read on this project

Problem, audience, market, and the verdict — sign in to see it.

Updates

No recent activity.