2026-03

Windows Privesc

Windows Event Logs and Forensic Artifacts: Tracking and Tampering

How Windows Security event logs record attacker activity, how adversaries clear them, and how defenders detect tampering.
Windows Privesc

Practical Windows Enumeration with winPEAS

A hands-on guide to running winPEASx64 for Windows privilege escalation enumeration, with defensive countermeasures.
Windows Privesc

Abusing SeBackupPrivilege and SeRestorePrivilege for Windows Privilege Escalation

How attackers abuse SeBackupPrivilege/SeRestorePrivilege to dump SAM, SYSTEM, and ntds.dit, plus blue-team detection and defense.
Linux Privesc

Exploiting SUID/SGID Binaries for Linux Privilege Escalation

How attackers abuse SUID/SGID binaries to escalate to root on Linux, plus blue-team detection and hardening.