10 minutes with admin access


My account on the domain will be a network admin account for 10 minutes, after which it will set be back to a regular user. what can be done/installed to retain as much freedom on the machine as possible. note: any newly created accounts will be noticed, and local admin passwords changed.

Dependent on circumstance:

  • Hack the Gibson!
  • Add a couple of 0's to your print credit reference in the database.
  • As said above, dump every password file you can find.
  • Run Metasploit with full admin rights.
  • Change AD group or user policies.
  • Find a user that hardly ever logs on, change their password and then give them Admin rights.
  • Leave a backdoor.
  • Hack naked!
