logo

From flat networks to locked up domains with tiering models

ID: 1ea1e7a7-5ef6-5b6e-b613-57d8819f216e

STIX ID: report--1ea1e7a7-5ef6-5b6e-b613-57d8819f216e

Feed Name: SensePost Blog

Date Published: 2026-03-09

Date Updated: 2026-04-30

...
...

This blog post reviews common Windows privilege-escalation and lateral-movement techniques (LSASS credential dumping, Pass-The-Hash, token impersonation, RDP shadow/shadowing, scheduled-task credential prompts, and certificate/PFX abuse) and argues that endpoint tools alone are insufficient. It recommends practical tiered network architectures (including a T-1 backup/hypervisor separation, isolated admin networks, bastions/RDS usage, private VLANs, and dual-forest designs) and operational controls to limit privilege flow, contain compromises, and protect backups.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.