PoC for CVE-2021-36934 Aka HiveNightmare/SeriousSAM fully written in python3
CVE-2021-36934 is a recently discovered vulnerability found by @jonasLyk allowing non-admin users to copy all registry hives which contain very private information like hashes which could lead to Privilege Escalation
Simple Poc for the HiveNightmare vulnerabilty inspired by @GossiTheDog.
Works on all versions of Windows 10, where System Protection is enabled.
This exploit will look through Volume Shadow Copy to extract SAM and System files