Phase 2 – Escalating privileges
Wanting local administrative rights, even though you're not allowed them, is what escalating privileges is all about. So, the problem we have here is now we've gone through and hacked a password and figured out the user ID, we're stuck with the privilege of that user—or are we?
Kevin Mitnick, the world-famous hacker said the following:
When you think about it, what he was doing was elevating his privileges by getting to know the source code and seeing which bugs or vulnerabilities he had to escalate out of.
We've made it in. What now?
What do we do now? Remember how we made it in this far? We found a user account and cracked their password. Our goal...