Windows Privilege Escalation | infoSec academy

Course description

Windows Privilege Escalation is a critical skill set for cybersecurity professionals, penetration testers, and ethical hackers operating in both red team and bug bounty environments. This discipline focuses on identifying and exploiting weaknesses in Windows systems that allow attackers to gain elevated access — from a regular user to administrative control. Practitioners learn to understand Windows internals, kernel and service vulnerabilities, misconfigurations, and credential leaks to simulate real-world attack scenarios. Ethical hackers use privilege escalation techniques responsibly, under authorized conditions, to assess and strengthen system defenses, ensuring organizations can detect and remediate threats before malicious actors exploit them.

What will i learn?

  • 01 : Privilege Escalation in Windows – Theory
  • 02 : 'Kernel' Exploits – Theory, Lab
  • 03 : 'Service' Exploits – Theory, Lab
  • 04 : 'Registry' Exploits – Theory, Lab
  • 05 : 'User Privileges' Exploits – Theory, Lab
  • 06 : 'Passwords' Exploits – Theory, Lab
  • 07 : 'Scheduled Tasks' Exploits – Theory, Lab
  • 08 : 'Startup Apps' Exploits – Theory, Lab
  • 09 : 'Insecure GUI Apps' Exploits – Theory, Lab
  • 10 : Privilege Escalation Tools – Theory, Lab

Requirements

  • Basic knowledge on System Hacking
  • The student must be above 18 years of age.

Frequently asked question

Windows Privilege escalation is used when an attacker has access to a regular user account and uses that account to gain access to the administrator user.

Security Officers, IT Auditors, Security Professionals, Site Administrators, Anyone who is concerned about the integrity of the information technology infrastructure, and individuals who are highly passionate about hacking.

Ethical Hacker,
Bug Hunter,
IT Security Specialist,
IT Security Consultant,
Network Security Specialist,
Penetration Tester,
Information Security Engineer,
Cyber Security Engineer.

NAZIM UDDIN

Nazim is a Technical and Quality Manager at AGS QA, overseeing an ISO/IEC 17025:2017 Accredited Cybersecurity Lab. In this role, he leads ISMS Audits, Penetration Testing, and Training services. With over four years of experience in Information Security and Cybersecurity, he has worked across various industries, including Government Services, Payment System Operators, Law Enforcement Agencies, Insurance, Banks, Finance, Corporations, and NGOs. In addition to a Bachelor’s Degree in Computer Science and Engineering, Nazim holds industry certifications such as Network+, CEH, CPENT, OSCP, BSCP, and ISO/IEC 27001:2022 also. He is ranked 20th out of 3M+ participants globally on the well-known CTF platform TryHackMe and has successfully exploited over 800+ systems.

৳2950

Lectures

43

Skill level

Intermediate

Expiry period

Lifetime

Related courses