What is Nostr?
Will Dormann /
npub1n3a…k88f
2024-05-21 14:25:10

Will Dormann on Nostr: This SnapAttack writeup on CVE-2024-30051 is pretty neat: ...

This SnapAttack writeup on CVE-2024-30051 is pretty neat: https://blog.snapattack.com/hunting-cve-2024-30051-8de021f0cf77

But don't let the mention of the UAC and even T1548.002 suggest that it's merely a UAC bypass. This allows going from non-admin to SYSTEM.

This is in no way a UAC bypass. The UAC's consent.exe is merely a mule to get the user-provided payload DLL to execute with SYSTEM privileges (by way of dwm.exe).

Author Public Key
npub1n3aew4nfpzqwqmws43pydswj06vu97wch6upnchrz4ku8ckc60nqfrk88f