Windows Enumeration
Gather info.
Windows Privilege Escalation
On Windows, the goal is usually to go from a normal user to NT AUTHORITY\SYSTEM — the highest local account, even above Administrator. As on Linux, success starts with thorough enumeration of the system.
Current User and Privileges
First, learn who you are and what privileges your token holds. whoami /priv is critical — privileges like SeImpersonate or SeBackup are direct escalation routes.
whoami
whoami /priv
whoami /groupsAll lessons in this course
- Windows Enumeration
- Service Misconfigurations
- Token Impersonation
- Credential Harvesting