Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Windows Privilege Escalation Penetration Testing - Part I
Rating: 3.7 out of 5(7 ratings)
68 students

Windows Privilege Escalation Penetration Testing - Part I

Enumeration and Exploitation of Windows Vulnerabilities and Misconfigurations to Access an Administrator Shell.
Last updated 6/2025
English

What you'll learn

  • Way to get our service and products (Tools & Gift related to the course: FREE software & hardware) at our Facebook .com/JRDcademy page to excel in this course.
  • Multiple methods for escalating privileges on a Windows system.
  • How to level up your ethical hacking, penetration testing and cybersecurity skills to boost your career
  • Most used tools which can help identify potential privilege escalation vulnerabilities on a Windows system.
  • Enumeration, Remote and Exploitation

Course content

1 section • 20 lectures • 3h 14m total length
  • Introduction3:38
  • Virtualbox (Installation & Configuration)9:46
  • Kali Linux (Installation & Configuration)11:29
  • Juicy information (sources) for the lectures7:10
  • System Enumeration after getting a shell4:45

    Explore how to enumerate a Windows system after gaining a shell, extracting host name, architecture, patching status, and drive information using systeminfo, hostname, and wmi queries.

  • User Enumeration after getting a shell5:54

    Enumerate users and groups after gaining a shell by running commands like whoami, net user, and net localgroup to identify administrators, guests, and permissions, and check password status and expiry.

  • Network Enumeration after getting a shell4:05

    Enumerate networks after gaining a shell by using ipconfig, arp -a, route print, and netstat -ano to identify gateways, DNS servers, interfaces, and active connections.

  • Password Hunting5:41

    Discover password hunting on a victim machine by locating passwords or credentials in files, revealing clear text or hashes, and cracking weak passwords for access.

  • AV Enumeration5:03
  • Automated Tools - AV Detection - Windows Suggester16:13

    Explore automated tools for Windows privilege escalation testing and AV detection, including PowerShell scripts and Metasploit, to identify ports, credentials, and missing patches.

  • Gaining a Foothold of the Following Lectures with MetaSploit12:57

    Gain a foothold by performing nmap scans, testing anonymous login on ftp, exploring http services, and using metasploit to craft payloads, gain a shell, and begin Windows privilege escalation enumeration.

  • Working with Automated Tools and with Suggester13:13

    Explore automated tools and the suggester for metasploit libraries to gather system information, identify vulnerabilities, and update metasploit for reliable privilege escalation testing.

  • Vulnerable Blue VM Configuration8:45

    Link to download the virtual machine (VM) can be found here: https://pixeldrain.com/u/yPyXpxFw

  • Vulnerable Blue VM - MetaSploit & Manual Exploitation, Getting Metepreter shell37:35
  • Kernel Exploit Overview6:39

    Explore what the kernel is, how it manages hardware and software through drivers, and why kernel exploits enable privilege escalation, with examples like Windows kernel exploits and Metasploit payloads.

  • Kernel Exploit with MetaSploit8:43

    Explains a Windows kernel privilege escalation using Metasploit, covering exploitation steps, session setup, and manual techniques to test vulnerable systems.

  • Foothold with your local_IP and MAC Address7:53

    Learn to establish a foothold by configuring your local ip and mac address for testing. Practice manual kernel exploitation techniques and manual ip configuration, including gateway and netmask.

  • Kernel Exploit with Suggester (I) - Manual11:07

    Explore conducting an nmap scan to identify open ports, locate a buffer overflow exploit, craft a payload, gain a Windows shell, and prepare for admin privilege escalation.

  • Kernel Exploit with Suggester (II) - Manual12:20

    Demonstrates identifying Windows vulnerabilities, deploying a payload via netcat and MSF, bypassing antivirus, and gaining system-level access on the victim machine.

  • Bonus Lecture - Getting our tools1:48

    Check the Facebook page before enrolling to find discounted course coupons, and follow the academy’s rules to obtain free coupons; the bonus lecture covers getting our tools.

Requirements

  • VirtualBox 8 GB RAM for setting up the Labs (more is better, less may cause performance issues)
  • Windows or Ubuntu or MacOS host (although other OS's should work)
  • Basic knowledge of virtual machines
  • A familiarity with hacking tools such as Kali Linux and metasploit
  • At the end, we require you to please, have DISCIPLINE. Do not try to attack what you don't own and/or what you are not allowed to. (cause you can line up in a place where you don't ever want to be --> Jail). Hack then Secure!

Description

This course teaches the concept of "Windows Privilege Escalation", from a basic perspective such as how permissions work, to in-depth coverage and demonstrations of actual privilege escalation techniques.

This course is aimed for beginners, intermediate to advanced users who are hungry to know how to discover and exploit novel escalation paths on patched fully patched Windows machines. Everything in this course is carefully explained [step-by-step].

Course has been designed in a way so that any novice, (from Zero level) to the advanced level of people in cyber security field can easily understand and can be well-benefited.

In this course, we supply to you not only videos for the practice, but also we provide a Lab along with some other files which are exclusively self-explanatory (a step-by-step process) so that we make it easier to learn according to the obligations that you might face while you want to continue with your practice.

This is a 100% hands-on course as you will be using the same strategies and techniques in an offensive security team and advanced adversaries use to escalate privileges on Windows endpoints after they have gained initial access and established a foothold.

We use MetaSploit framework as well as Manual Exploitation to perform the privilege escalation. Everything is carefully explained and deconstructed so you can understand why and how it works.

Who this course is for:

  • Penetration Testers
  • Cyber Security Analysts
  • Cyber Security Students who want to become an advanced PenTester
  • Students interested in how attackers escalate privileges on modern Windows endpoints
  • Anyone who starves into learning hacking and security.