WinPrivEsc Enumeration
Situational Awareness
- Username and hostname
- Group memberships of the current user
- Existing users and groups
- Operating system, version and architecture
- Network information
- Installed applications
- Running processesEnumerate User
whoami
whoami /groups
whoami /privGet-LocalUser
Get-LocalGroup
Get-LocalGroupMember $user
Get-LocalGroup $groupnameEnumerate Hostname
Enumerate Network
Installed Application
Process
Hidden in Plain View
PowerShell History
Automated Tools
Last updated