top of page
post exploitation

Post-Exploitation, Tunneling & Lateral Movement

  • 32 Steps
  • 5 Participants

About

Prerequisite: Complete Privilege Escalation before this module. You should already have contractor access on the member workstation (`lowpriv` on `10.10.10.30`), at least one validated privilege-escalation path to root on that host, NFS backup secrets from `10.10.10.44`, and SSH lateral movement experience on `10.10.10.22`. In this module of the Junior Penetration Tester learning path, you stop treating compromise as a single shell and start operating like an operator: stabilize access, harvest credentials at scale, tunnel through a dual-homed foothold, and chain movement across the same Ciberbots lab range you hardened in Privilege Escalation. Upon completion of the module, students will be able to: • Stabilize and document post-exploitation access on a Linux foothold after root-equivalent privilege. • Aggregate secrets from member workstation, NFS exports, and database services into a reusable credential map. • Build SSH local port forwards and dynamic SOCKS proxies through the member workstation pivot. • Reach SMB and MySQL targets through tunnels when direct attacker routing is insufficient or undesirable. • Execute a controlled mini kill-chain: privilege escalation → credential harvest → tunnel → lateral movement. • Relate post-exploitation actions to MITRE ATT&CK (T1003, T1021, T1572, T1048) and defender detection opportunities. For inquiries, please write us at https://www.darkrelay.com/cybersecurity-course-inquiry

Overview

Price

2 Plans Available, From ₹2,399.00

Share

bottom of page