diff --git a/README.md b/README.md index 0c32fa2..747fcea 100644 --- a/README.md +++ b/README.md @@ -11,16 +11,17 @@ Note:-Below exploit works on Windows10 Steps: 1.open ctftool.exe 2.Type: + connect script .\scripts\ctf-consent-system.ctf or .\scripts\ctf-logonui-system.ctf 3.Boom !! after a few second you will get system privileged CMD. -4.In the script:1.ctf-consent-system.ctf - A uac prompt will open and soon a cmd opens with system privilege in your existing session. +4.In the script: + +ctf-consent-system.ctf :-A uac prompt will open and soon a cmd opens with system privilege in your existing session. - 2.ctf-logonui-system.ctf - Your session will logout and and a cmd opens with system privilege at logon screen which you can use to break administrator password. +ctf-logonui-system.ctf :-Your session will logout and and a cmd opens with system privilege at logon screen which you can use to break administrator password. xxxxxxxxxxxxxxxxx I have also tested the exploit and it works with no trouble xxxxxxxxxxxxxxxxxxxxxxxxxxxxx