Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[addtool] GodPotato #1042

Closed
piyush-security opened this issue Apr 12, 2023 · 3 comments
Closed

[addtool] GodPotato #1042

piyush-security opened this issue Apr 12, 2023 · 3 comments
Labels
enhancement New feature or request refused

Comments

@piyush-security
Copy link

[homepage] If you have "ImpersonatePrivilege" permission, then you are "NT AUTHORITY\SYSTEM" [/homepage]
[link] https://github.com/BeichenDream/GodPotato [/link]

[tags] potato, godpotato, windows, privesc [/tags]

[short_descr]

Based on the history of Potato privilege escalation for 6 years, from the beginning of RottenPotato to the end of JuicyPotatoNG, I discovered a new technology by researching DCOM, which enables privilege escalation in Windows 2012 - Windows 2022, now as long as you have "ImpersonatePrivilege" permission. Then you are "NT AUTHORITY\SYSTEM", usually WEB services and database services have "ImpersonatePrivilege" permissions.

Potato privilege escalation is usually used when we obtain WEB/database privileges. We can elevate a service user with low privileges to "NT AUTHORITY\SYSTEM" privileges. However, the historical Potato has no way to run on the latest Windows system. When I was researching DCOM, I found a new method that can perform privilege escalation. There are some defects in rpcss when dealing with oxid, and rpcss is a service that must be opened by the system. , so it can run on almost any Windows OS, I named it GodPotato

[/short_descr]

[image]
image

[/image]

@gwen001
Copy link
Owner

gwen001 commented Apr 12, 2023

Issue correctly handled, tool is waiting for human validation.

@gwen001 gwen001 added the enhancement New feature or request label Apr 12, 2023
@gwen001
Copy link
Owner

gwen001 commented Apr 12, 2023

You don't respect the expected format of the issue in all your contributions as explained in the guidelines.

The homepage tag is for a link to the tool not a description.
The short_descr tag if for a short description of the tool (100 chars max.) not a long text.
The long_descr tag if for a long description of the tool.
The link tag is not considered at all.

Please use the issue template created for that purpose to avoid any mistake.
You can also check one of the past issue already closed to see how it's supposed to be.

For now I put your contributions in stand by mode until you fix them. It's too much work for me to manually edit them all.

Thank you for your understanding.

@gwen001 gwen001 added invalid This doesn't seem right and removed enhancement New feature or request labels Apr 12, 2023
@gwen001
Copy link
Owner

gwen001 commented Apr 19, 2023

Tool has been refused by the team, feel free to get in touch if you have any question.

Thank you!

@gwen001 gwen001 closed this as completed Apr 19, 2023
@gwen001 gwen001 added wontfix This will not be worked on and removed invalid This doesn't seem right labels Apr 19, 2023
@gwen001 gwen001 added enhancement New feature or request refused and removed wontfix This will not be worked on labels Dec 7, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request refused
Projects
None yet
Development

No branches or pull requests

2 participants