find_token_abuse
Map Windows token privileges to abuse techniques, potato attacks, and LOL binaries to identify privilege escalation paths.
Instructions
Analyze Windows token privileges in an enumerated environment and map them to known abuse techniques, potato attacks, and LOL binaries for privilege escalation.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| token_type | No | Filter by token type: specific privilege, 'duplicate' for token duplication techniques, 'privilege_map' for full mapping, or 'all' for everything | |
| environment_id | Yes | Environment session ID returned by enumerate_host |