🏁Cheatsheet - Fast Commands (PRIVILEGE ESCALATION)
Enumeration - Local Privilege Escalation
View you current privileges in the domain
whoami /all
## grupos, privilegios, SID, permisos especiales
net user %username% /domain
## Domain Admin, RDP Users, Backup Operators, etc
net localgroup administrators
## Search about local admin privilegesC:\AD\Tools\InviShell\RunWithRegistryNonAdmin.bat . C:\AD\Tools\PowerUp.ps1
Invoke-AllChecks
Abuse of Invoke-ServiceAbuse

Local Privilege Escalation - WinPEAS

Local Privilege Escalation - PrivEscCheck

User Hunt for Local Admin access

Connect by other Domain Machines how Local Admin


PowerShell Remoting

Abuse Jenkins Instance




Share a folder with Invoke-PowerShellTcp







Last updated