Publication Type : Conference Paper
Publisher : IEEE
Source : 2025 2nd International Conference on Computing and Data Science (ICCDS)
Url : https://doi.org/10.1109/iccds64403.2025.11209691
Campus : Chennai
School : School of Computing
Department : Computer Science and Engineering
Year : 2025
Abstract : Privilege escalation is perhaps the most elusive and dangerous attack vector on Windows operating systems. This project describes an integrated solution that simulates a privilege escalation attack and incorporates a two-pronged prevention mechanism: a light-weight C\#-based system-level service named PrivilegeBlocker and an external Machine Learning (ML) detection model trained to detect anomalies typical of privilege escalation attempts. The simulation demonstrates how C++ exploits can mimic real escalation behavior. The prevention mechanism catches access control violations and notifies users whereas the ML model maximizes long-term threat detection. This paper outlines the design, implementation, simulation, and analysis of this scheme, which achieves maximum endpoint protection on Windows systems. The system can be executed continuously as a background service, providing advanced security without disrupting user activities or degrading performance.
Cite this Research Publication : SakthiMurugan S, Sabarishwaran S, Geetha K, Advanced Privilege Escalation Prevention System for Windows, 2025 2nd International Conference on Computing and Data Science (ICCDS), IEEE, 2025, https://doi.org/10.1109/iccds64403.2025.11209691