Eumeration
Enumerate material found on the machine.
Use pre-installed tools on the machine
Use scripting techniques
Use local tools through a proxy (last resort ; very slow)
Check arp cache, static mappings, local DNS servers and interfaces (Linux)
Check arp cache, static mappings and interfaces (Windows)
Nmap scan after pivot
Living Off the Land (LotL)
Start off with uploading nmap and scanning the network from the compromised server
Bash one-liner ping sweep
Bash one-liner port scan
Windows ping sweep tools
Last updated