TGViewer
Ralf Hacker Channel Ralf Hacker Channel @ralfhackerchannel · 28.3K subscribers
Post #1514 16.3K
FakePotato зарегестрировано как CVE-2024-38100. Опять DCOM для обхода контекста безопасности...

https://decoder.cloud/2024/08/02/the-fake-potato/

Помечено как "Important LPE", но запатчено в июле... MS такой MS 😅😂

#pentest #redteam #lpe #ad
Decoder's Blog The “Fake” Potato While exploring the DCOM objects for the “SilverPotato” abuse, I stumbled upon the “ShellWindows” DCOM application. This, along with “ShellBrowserWindows”, is we…
  • 😁 17
  • 👍 6
  • 🔥 4
More from @ralfhackerchannel
  1. Sep 18, 2026cups2root Linux LPE Interactive root shell from a local account in the lpadmin group.
  2. Sep 8, 2026Продолжается https://github.com/MSNightmare/ShieldCrash Windows Defender 0day Vulnerabilit…
  3. Sep 3, 2026Идем дальше https://github.com/MSNightmare/FalconFlank Crowdstrike Falcon 0day LPE #lpe #a…
  4. Aug 13, 2026VHDVomit A tool to search SMB shares for VHD/VMDK/VHDX backup files, mount them and dump s…
  5. Aug 11, 2026Он опять это сделал) https://github.com/MSNightmare/ShieldBreak Windows Defender LPE 0day…
  6. Jul 24, 2026🔒 Certighost (CVE-2026-54121) — AD CS Domain Controller Impersonation Low-privileged doma…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →