logo

Internal Pivot, Network Enumeration, & Lateral Movement

ID: bc19b87f-f4ea-5cc7-93b8-5449c807de6f

STIX ID: report--bc19b87f-f4ea-5cc7-93b8-5449c807de6f

Feed Name: Black Hills Infosec Blog

Date Published: 2016-04-25

Date Updated: 2026-04-27

Author: BHIS

...
...

**Executive Summary:** This write-up details an internal penetration-testing technique: after gaining foothold and elevating privileges via Group Policy Preferences and DLL hijacks, the operator performs network discovery by pinging potential ".1" gateway addresses across a class B (/16) space using a Windows FOR loop with PING and TTL manipulation to discover router gateways and map client/server subnets for broader lateral-access opportunities.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.