Privilege escalation occurs when a process exploits credentials, software flaws, misconfiguration, or excessive trust to gain stronger access. The escalation may be vertical, reaching administrator rights, or horizontal, reaching another identity at a similar level.
Least privilege, credential isolation, patching, access reviews, and monitoring reduce the opportunity and impact. Administrative access should be short-lived, attributable, and separated from systems that do not require it.
