Windows HTTP.SYS Kerberos PAC Verification Bypass / Privilege Escalation

The HTTP server implemented in HTTP.SYS on Windows handles authentication in a system thread which bypasses PAC verification leading to escalation of privilege.

Leave a Reply