Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Hijacking SQL Server Credentials using Agent Jobs for Domain Privilege Escalation

Summary

SQL Server credential objects can be abused via Agent Jobs to execute code as local Windows or domain users. The article demonstrates the privilege escalation path and the logging needed to detect it.
Published
Collected

original ↗