Internal Pivot, Network Enumeration, & Lateral Movement
ID: bc19b87f-f4ea-5cc7-93b8-5449c807de6f
STIX ID: report--bc19b87f-f4ea-5cc7-93b8-5449c807de6f
Feed Name: Black Hills Infosec Blog
**Executive Summary:** This write-up details an internal penetration-testing technique: after gaining foothold and elevating privileges via Group Policy Preferences and DLL hijacks, the operator performs network discovery by pinging potential ".1" gateway addresses across a class B (/16) space using a Windows FOR loop with PING and TTL manipulation to discover router gateways and map client/server subnets for broader lateral-access opportunities.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
