Jeeves Writeup by Largoat

@B3nT3ch said:

@jwardak said:

@B3nT3ch said:
Nice work mate I wanted to mention there is an intended way for priv esc on jeeves (ROtten Potato) and it worked for me

Hey mate, would you mind posting the steps you took for Priv Esc using Rotten Potatoes NTLM MiTM attack please?

Yes ofc I heared about an exploit called potato from some time so that did lead me to search on google where I found this detailed article on it
Rotten Potato – Privilege Escalation from Service Accounts to SYSTEM

after that i did look for the ready exe file i did not wona compile the program from it’s original repo and that led me to this github repo
https://github.com/SecWiki/windows-kernel-exploits/tree/master/MS16-075

I did follow the steps and it did work

Thank you very much mate!