HiveNightmare a.k.a. SeriousSam Local Privilege Escalation in Windows

A new Local Privilege Escalation (LPE) has been discovered in Windows 10/11. The vulnerability, named HiveNightmware a.k.a. SeriousSam, is a result of a “bad” ACL set on the registry hive files in the C:\Windows\System32\Config folder. This allows regular users read access to the SAM, SYSTEM, SECURITY, and other critical files. This means that a regular […]

The post HiveNightmare a.k.a. SeriousSam Local Privilege Escalation in Windows appeared first on TRUESEC Blog.

Article Link: HiveNightmare a.k.a. SeriousSam Local Privilege Escalation in Windows - TRUESEC Blog