TW-D 4f6cd4b54d
Execution - Get System (#446)
Disable "PowerShell" logging
Check if current process have "Administrator" privilege
Check "SeDebugPrivilege" policy
Retrieves the processes belonging to the "SYSTEM" account
For each system PID, test to obtain the "SYSTEM" account via the parent process
2021-08-16 07:43:01 -05:00
2019-06-27 15:17:53 +02:00
2021-08-16 07:43:01 -05:00
2017-04-07 15:13:12 +10:00
2017-05-08 16:11:10 +10:00
2021-07-12 20:42:38 +01:00

Payload Library for the Bash Bunny by Hak5

Bash Bunny

Description
No description provided
Readme 152 MiB
Languages
PowerShell 35.9%
JavaScript 27.9%
HTML 15%
CSS 9.5%
Python 6.5%
Other 5%