Endpoint Team Lead at Symantec | Photographer ( https://t.co/7svmAnA4ln ), revives old photographic processes | Strives to be a better ally (he/him)
Sep 4, 2021 • 20 tweets • 7 min read
@gentilkiwi wrote Mimkatz to learn C. We can use it to learn Windows Internals. Let’s start with the most basic command: “Privilege::debug”. It might be overlooked, though we will see how deep the rabbit hole goes. #WindowsInternalsViaMimikatz 🧵1/20
“Privilege::debug” is used as a requirement for many other commands like “sekurlsa::logonpasswords”. We will start by figuring out what it does and then learn where else it can lead us. 2/20