Network pentesting

Network pentesting

External and internal network engagements: recon → enumerate → get a foothold → escalate → move laterally → reach the objective.

Prereqs

  • TCP/IP fundamentals, OSI layers, common protocols.
  • Comfort in a Linux shell; basic Bash and Python scripting.
  • A controlled lab (HackTheBox, OffSec Proving Grounds, your own VMs).

Stage 1 — fundamentals

Stage 2 — intermediate

Stage 3 — advanced

  • Active Directory attack chains end-to-end.
  • Cross-segment pivoting, dual-homed hosts, double pivots.
  • Operating under EDR and PAM (see red-team-operations).
  • Detection-aware tooling — replacing noisy public binaries with bring-your-own-tool.

When you’re “done”

  • You walk into a /16 you’ve never seen and have a working hypothesis in under an hour about where the crown jewels live.
  • You stop reaching for automation when the lab is small enough to triage manually.