How to get SQL Server Sysadmin Privileges as a Local Admin with PowerUpSQL
netspi.com | blog | #privilege-escalation | #windows | #sql-server | #powerupsql | #token-impersonation
Summary
Because SQL Server service accounts hold sysadmin by default, a local admin can impersonate them via token manipulation or extract their credentials, gaining DBA-level control of every instance.
- Published
- Collected
Skip to content