sierra.frye
Checking for user privileges of the sierra.frye
user on the research.search.htb
host after performing basic enumeration
ps c:\Users\Sierra.Frye\Documents> whoami /all
USER INFORMATION
----------------
User Name SID
================== =============================================
search\sierra.frye S-1-5-21-271492789-1610487937-1871574529-1282
GROUP INFORMATION
-----------------
Group Name Type SID Attributes
========================================== ================ ============================================= =============
=====================================
Everyone Well-known group S-1-1-0 Mandatory gro
up, Enabled by default, Enabled group
BUILTIN\Users Alias S-1-5-32-545 Mandatory gro
up, Enabled by default, Enabled group
BUILTIN\Pre-Windows 2000 Compatible Access Alias S-1-5-32-554 Mandatory gro
up, Enabled by default, Enabled group
BUILTIN\Certificate Service DCOM Access Alias S-1-5-32-574 Mandatory gro
up, Enabled by default, Enabled group
BUILTIN\Remote Management Users Alias S-1-5-32-580 Mandatory gro
up, Enabled by default, Enabled group
NT AUTHORITY\NETWORK Well-known group S-1-5-2 Mandatory gro
up, Enabled by default, Enabled group
NT AUTHORITY\Authenticated Users Well-known group S-1-5-11 Mandatory gro
up, Enabled by default, Enabled group
NT AUTHORITY\This Organization Well-known group S-1-5-15 Mandatory gro
up, Enabled by default, Enabled group
SEARCH\ITSec Group S-1-5-21-271492789-1610487937-1871574529-1295 Mandatory gro
up, Enabled by default, Enabled group
SEARCH\Birmingham-ITSec Group S-1-5-21-271492789-1610487937-1871574529-1106 Mandatory gro
up, Enabled by default, Enabled group
Authentication authority asserted identity Well-known group S-1-18-1 Mandatory gro
up, Enabled by default, Enabled group
Mandatory Label\Medium Mandatory Level Label S-1-16-8192
PRIVILEGES INFORMATION
----------------------
Privilege Name Description State
======================= ======================== =======
SeChangeNotifyPrivilege Bypass traverse checking Enabled
USER CLAIMS INFORMATION
-----------------------
User claims unknown.
Kerberos support for Dynamic Access Control on this device has been disabled.
The sierra.frye
user does not have any explicit local privileges