WinSecWiki > Security Settings > Local Policies > User Rights > User Rights In-Depth > Act as OS

Act as part of the operating system

AKA: SeTcbPrivilege, Act as part of the operating system

Default assignment: ???

Note: This is an admin-equivalent right.

This right extremely powerful and dangerous and with very few exceptions should never be granted to user or application/service accounts. This right allows the process to assume the identity of the root SYSTEM account itself or to become other user accounts. As SYSTEM the process can take complete control of the computer and access/modify/delete any object, user or group.

