Windows process impersonation using RunAs, Windows APIs, and psexec

Impersonation is the ability of a thread or process to execute in a security context that is different from the context of the process that owns the thread or process. On Windows, there are many ways to impersonate a user. Some methods are very easy to use. Some are very insecure. In this post we will review the following methods: Using RunAs Using Windows APIs Using psexec Impersonation is also available...


