aPAColypse now: Exploiting Windows 10 in a Local Network with WPAD/PAC and JScript
projectzero.google | blog | #rce | #windows | #lateral-movement | #project-zero | #wpad | #pac | #jscript
Summary
A Project Zero write-up showing how a local network attacker can abuse Windows 10 WPAD/PAC proxy files, executed as JavaScript by jscript.dll, to achieve remote code execution.
- Published
- Collected
Skip to content