WINDOWS PRIVILEGE ESCALATION [Miscellaneous Techniques]

Can someone please help me with “Using the techniques in this section, find the cleartext password for an account on the target host.”?

1 Like

Hey there!

A hint: enumerate the box with Powershell cmdlets, following the section’s examples.

Check for the local user descriptions

Hi, I finally found the answer with a Powershell command get-something, no need to be admin to run it.

Didn’t we talk about " Sticky Notes" !

WinPeas → and check the results

+1