Privilege Escalation DLL Hijacking
Privilege Escalation DLL Hijacking
Vivek Ramachandran
SWSE, SMFE, SPSE, SISE, SLAE, SGDE Course Instructor
Certifications: http://www.securitytube-training.com
©SecurityTube.net
Pentesting Windows Endpoints
Privilege Escalation using DLL Hijacking
©SecurityTube.net
Mark Russinovich’s Tech Ed Talk
• How?
– Runs Flash Installer/Updater
– User prompted for admin
– After privilege escalation DLL hijack is done
• Full talk:
http://channel9.msdn.com/Events/TechEd/NorthAmerica/201
4/DCIM-B368#fbid=
©SecurityTube.net
Lab Setup – Windows 7 with multiple accounts
©SecurityTube.net
Download Files
©SecurityTube.net
Privilege Escalation
• GAME OVER!
©SecurityTube.net
Pentester Academy
©SecurityTube.net