This is a comprehensive privesc playbook that walks you through the standard Windows escalation ladder: token abuse via the Potato family (JuicyPotato through GodPotato), service misconfigurations like unquoted paths and weak ACLs, DLL hijacking, AlwaysInstallElevated, and registry autoruns. The enumeration checklist maps privilege flags (SeImpersonatePrivilege, SeDebugPrivilege) to specific exploits, and the tool selection tables break down OS version constraints, which base models consistently mess up. It references two supplemental docs for deeper Potato exploit selection and UAC bypass techniques. Load this when you have a low privilege shell and need to get SYSTEM or admin, whether through service account token impersonation or classic misconfig exploitation.
npx skills add https://github.com/yaklang/hack-skills --skill windows-privilege-escalation