skillfed

Windows Kernel Exploits

This skill guides penetration testers through identifying and exploiting Windows kernel vulnerabilities for privilege escalation. It covers automated vulnerability assessment using tools like WES-NG and Watson, then walks through exploitation of named CVEs including PrintNightmare, EternalBlue, and others, with emphasis on reliability and crash risk mitigation.

Windows Kernel Exploits helps testers identify and exploit kernel vulnerabilities for local privilege escalation to SYSTEM.

AI-generated summary based on this skill's SKILL.md

241 34 GPL-3.0 updated by blacklanternsecurity

Install

blacklanternsecurity/red-run/windows-kernel-exploits · repository language: Python

git clone https://github.com/blacklanternsecurity/red-run
cp -r red-run ~/.claude/skills/windows-kernel-exploits

generated, unverified - the skill's exact subdirectory could not be determined; check the repository on GitHub

npx skillfed install blacklanternsecurity/red-run/windows-kernel-exploits

Frequently asked questions

AI-generated answers based on this skill's SKILL.md and metadata

What does Windows Kernel Exploits cover?

Windows Kernel Exploits guides penetration testers through identifying and exploiting Windows kernel vulnerabilities for privilege escalation. It covers automated vulnerability assessment using tools like WES-NG and Watson, then walks through exploitation of named CVEs including PrintNightmare and EternalBlue, with emphasis on reliability and crash risk mitigation.

What kernel vulnerability exploitation windows techniques are included?

Windows Kernel Exploits teaches kernel vulnerability exploitation techniques focused on privilege escalation. The skill emphasizes practical exploitation of known CVEs, reliability considerations, and crash risk mitigation strategies to help penetration testers successfully escalate privileges through kernel-level attacks.

Which tools does Windows Kernel Exploits recommend for assessment?

Windows Kernel Exploits recommends automated vulnerability assessment tools including WES-NG and Watson. These tools help identify applicable kernel vulnerabilities on target systems before exploitation attempts, streamlining the reconnaissance phase of kernel-level privilege escalation engagements.

How does Windows Kernel Exploits address exploitation reliability?

Windows Kernel Exploits emphasizes reliability and crash risk mitigation throughout its exploitation guidance. The skill provides techniques to reduce system instability when exploiting kernel vulnerabilities, helping penetration testers maintain target system stability during privilege escalation attempts.

What specific CVEs does Windows Kernel Exploits cover?

Windows Kernel Exploits walks through exploitation of named CVEs including PrintNightmare and EternalBlue. These represent key kernel vulnerabilities commonly encountered in penetration testing engagements, with detailed exploitation guidance and proof-of-concept approaches.

Is Windows Kernel Exploits suitable for penetration testing?

Windows Kernel Exploits is designed specifically for penetration testers conducting authorized security assessments. It provides kernel attack vectors, privilege escalation techniques, and exploitation frameworks needed for comprehensive kernel-level testing within authorized engagements.

Related skills

Tags

privilege-escalation vulnerability-research kernel-mode-attacks exploit-development windows-security penetration-testing cve-exploitation security-tools