Poster: Referencing Your Privileges – A Data-Only Exploit Technique for the Windows Kernel
摘要
In this poster, we present an exploit technique using an integer overflow turned out-of-bounds write inside the paged pool to escalate our privileges on the latest Windows 11 version 24H2. We describe our exploitation strategy and demonstrate how we used it to carry out the exploit. We also identify some future technical directions that could improve this exploit technique.