Pentest Network Internal

Internal network penetration testing, Active Directory enumeration, and lateral movement simulation.

jd-opensource 7e0f7f5 3 files · 10.0 KB Updated

File contents

Pentest Network Internal

Purpose

Simulate an internal attacker to identify weak credentials, misconfigured services, and Active Directory paths to high-value assets.

Core Workflow

  1. Network Discovery: Map the internal network, live hosts, and open ports using nmap and masscan.
  2. Service Enumeration: Identify running services, versions, and potential entry points (SMB, RDP, SSH, etc.).
  3. Vulnerability Scanning: Check for known service vulnerabilities (e.g., EternalBlue, ZeroLogon) using nuclei and nmap-scripts.
  4. Credential Auditing: Test weak passwords and default credentials using hydra and netexec (CrackMapExec).
  5. Active Directory Enum: Map AD trust relationships, users, and groups using bloodhound and ldapdomaindump.
  6. Lateral Movement: Simulate movement between hosts using valid credentials or exploits.

References

  • references/tools.md
  • references/workflows.md

jd-opensource/JoySafeter/tree/main/skills/pentest-network-internal commit 7e0f7f58e2

Frequently asked questions

npx skillmds@latest add jd-opensource/pentest-network-internal