11 pages
Windows Local Privesc & Host
Winning the box: low-priv shell → local admin/SYSTEM via UAC, tokens, services, tasks, pipes, DLLs and PATH, plus the Potato family — and keeping it.
Page Kind Tags Updated
Windows Local Privilege Escalation
WinPEAS
local privilege-escalation enumeration
UAC Bypass
Token Privilege Escalation
token steal + impersonation
Service Privilege Escalation
Scheduled Task Abuse
Named Pipe Hijacking
DLL Hijacking & Sideloading
Environment Variable Attack
PATH / PATHEXT
The Potato Family
Coerced Pipe Impersonation
Windows Local Persistence
11 pages in this section