
Impersonate-Privileg von einem Dienst zu SYSTEM missbrauchen, wie es andere Potatoes tun
Dank an @Wh04m1001 für die kontinuierliche Kommunikation im Laufe der Zeit
Nur eine weitere Potato wie andere Potatoes, die den RasMan-Dienst zur Privilegienerweiterung nutzt
Für Windows 10 (11 nicht getestet), Windows Server 2012 - 2019 (2022 nicht getestet)
magicRasMan v0.1
Provided that the current user has the SeImpersonate privilege, this tool will have an escalation to SYSTEM
Arguments:
-c <CMD> Execute the command *CMD*
-m <METHOD> Choose The RPC Function [1]VpnProtEngWinRtConnect [2]VpnProtEngGetInterface
-i Interact with the new process in the current command prompt (default is non-interactive)