Tools & Utility

WinPEAS

Windows Privilege Escalation Awesome Script for finding possible paths to escalate privileges on Windows hosts.

#privesc#windows#enumeration#post-exploitation

WinPEAS: Windows Privilege Escalation

WinPEAS searches for possible paths to escalate privileges on Windows hosts.

Usage

powershell
# Run
.\winPEASx64.exe

Quiet mode

.\winPEASx64.exe quiet

Specific checks

.\winPEASx64.exe servicesinfo

What It Checks

  • System information
  • Installed software
  • Network information
  • User and group details
  • Service misconfigurations
  • Scheduled tasks
  • Registry keys
  • Unquoted service paths
  • AlwaysInstallElevated
  • Stored credentials