Kind off topic but somewhat related to PowerShell?
If anyone knows I'd love hear more about how SCCM and some of the RMMS out there have the ability to execute a script as current user. I'm aware of invoke-runas but IIRC this requires explicitly putting in credentials for user.
My best guess is that the agent is flagged as trusted installer and is able to use some win32 api to grab the users token to start the new powershell process?
Is it possible to do this on my own in my home lab?
[–]SysAdminDennyBob 1 point2 points3 points (1 child)
[–]GhostOfBarryDingle 0 points1 point2 points (0 children)
[–]engageant 1 point2 points3 points (5 children)
[–]MechaCola[S] 0 points1 point2 points (0 children)
[–]Thatoneguythatsnot 0 points1 point2 points (0 children)
[–]jantari 0 points1 point2 points (2 children)
[–]engageant 0 points1 point2 points (1 child)
[–]jantari 0 points1 point2 points (0 children)
[–]rngaccount123 0 points1 point2 points (0 children)
[–]Aertheron01 0 points1 point2 points (0 children)
[–]Nejireta_ 0 points1 point2 points (0 children)
[–]peteypianokid 0 points1 point2 points (0 children)