Registry Exploits
AutoRuns
Startup apps or "AutoRuns" are configures in the registry.
If the autoruns executable is wriable and we have the privilege to restart the system, we can place the reverse shell and restart the system to get a shell
AlwaysInstalledElevated
MSI are installer files that are used to install application
Runs with the permission of the user executing the file
Windows allows for these installers to be run with elevated privileges.
Two Registry requirements:
Last updated