README.md
July 21, 2026 ยท View on GitHub
๐ช Windows Privilege Escalation
A practical Windows Privilege Escalation cheat sheet and reference guide designed for penetration testers, red teamers, and cybersecurity learners to understand how attackers escalate privileges on Windows systems during post-exploitation.
๐ Connect With Us
๐ต Telegram โ Join Channel
โซ Twitter/X โ Follow Us
๐ฃ Discord โ Join Server
๐ผ LinkedIn โ Follow HackingArticles
๐ Training Program
๐ Join Our Cybersecurity Training Program
Hands-on training in Penetration Testing, Red Teaming, and Cybersecurity.

๐ช Windows Privilege Escalation Techniques
| # | Topic | Article |
|---|---|---|
| 1 | ๐พ SeBackupPrivilege | Read Article |
| 2 | ๐ญ SeImpersonatePrivilege | Read Article |
| 3 | ๐ SeDebugPrivilege | Read Article |
| 4 | โป๏ธ SeRestorePrivilege | Read Article |
| 5 | ๐ SeTakeOwnershipPrivilege | Read Article |
| 6 | ๐ SeTcbPrivilege | Read Article |
| 7 | โ๏ธ AlwaysInstallElevated | Read Article |
| 8 | ๐ DnsAdmins to DomainAdmin | Read Article |
| 9 | ๐งจ HiveNightmare | Read Article |
| 10 | ๐ Registry Run Keys | Read Article |
| 11 | ๐ Startup Folder | Read Article |
| 12 | ๐ Stored Credentials (Runas) | Read Article |
| 13 | ๐๏ธ Weak Registry Permissions | Read Article |
| 14 | ๐ ๏ธ Unquoted Service Path | Read Article |
| 15 | ๐ฅ๏ธ Insecure GUI Application | Read Article |
| 16 | ๐ง Weak Service Permissions | Read Article |
| 17 | โฐ Scheduled Task / Job | Read Article |
| 18 | ๐งฌ Kernel Exploit | Read Article |
| 19 | ๐งพ SamAccountSpoofing (CVE-2021-42278) | Read Article |
| 20 | ๐จ๏ธ SpoolFool | Read Article |
| 21 | ๐จ๏ธ PrintNightmare | Read Article |
| 22 | ๐งโ๐ป Server Operator Group | Read Article |