{"repo":"itm4n/PrivescCheck","free":true,"listed":false,"github":"https://github.com/itm4n/PrivescCheck","clone":"git clone https://github.com/itm4n/PrivescCheck.git","description":"Privilege Escalation Enumeration Script for Windows","language":"PowerShell","stars":3913,"topics":["pentest-tool","windows","windows-privilege-escalation","privilege-escalation","pentesting"],"license":"BSD-3-Clause","category":"security-tools","readme_excerpt":"PrivescCheck Quickly identify common Windows vulnerabilities and configuration issues that are not necessarily covered by public security standards, and collect useful information for exploitation and post-exploitation tasks. [!IMPORTANT] A major aspect to be aware of when using this tool is that all access control checks are done in the context of the current user. Therefore, if it is run with administrator privileges, a lot of vulnerability checks are actually skipped to avoid generating incorrect findings. :rocket: Quick Start Download the script here: PrivescCheck.ps1 [!TIP] The link above can also be used directly in a PowerShell terminal with (New-Object Net.WebClient).DownloadString(...) . Use Case 1 (Pentest): Run Basic Checks Only Is there an obvious way to escalate privileges locally? Use Case 2 (Research): Run Extended Checks + Write Human-Readable Reports Is there additional information that can be leveraged for post-exploitation or for finding vulnerabilities in third-party software? Use Case 3 (Audit): Run All Checks + Write All Reports Are there configuration issues that are not covered by common security standards? :open book: Detailed Usage Report Format TXT ( -Format TXT ) Use the option -Report (with -Format TXT ) to specify that you want to generate a raw text report . The output is similar to what you would see in the terminal, except that it contains only ASCII characters for better (retro-)compatibility will all text editors. Report Format HTML ( -Forma","default_branch":null,"files":null,"tree":[],"storefront":"/r/itm4n","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/itm4n/PrivescCheck/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}