Windows Privesc: Tokens & UAC Bypass

advanced Hands-on lab 45 min 3 tasksSubscription

Abuse SeImpersonatePrivilege with the Potato family and PrintSpoofer to impersonate SYSTEM from a service account, then bypass UAC to elevate an admin-but-filtered token to high integrity.

This lab is available with a Purple Edge subscription. Sign in to view the full overview and start the lab.

Part of these paths

Unlock this lab

Launch the lab in your browser. Real Kali, Ubuntu and Windows targets, guided step by step. No setup, no VM downloads.

Updated 2026-06-15