If an attacker finds a service that has all permission and its bind with the Registry run key then he can perform privilege escalation or persistence attacks. When a legitimate user signs in, the service link with the registry will be executed automatically and this attack is known as Logon
The post Windows Privilege Escalation: Logon Autostart Execution (Registry Run Keys) appeared first on Hacking Articles.

