Skip to main content
1 min read Intermediate Network
Network Pentesting - Core Concepts

Basics of Network Pentesting.

DomainDescriptionCommon Tools
Scoping & PlanningDefine objectives, scope, targets, testing constraints, and rules of engagement.Documentation, Asset Inventory
Network FundamentalsUnderstand TCP/IP, OSI, IP addressing, subnetting, routing, and common protocols.Wireshark, tcpdump
ReconnaissanceGather information about the target network and identify potential assets.Whois, dig, Amass
Host DiscoveryIdentify live hosts and network assets.Nmap, Masscan, fping
Port ScanningDiscover exposed ports and accessible services.Nmap, RustScan, Masscan
Service EnumerationIdentify services, versions, configurations, and accessible resources.Nmap NSE, Netcat, smbclient
Protocol EnumerationAssess network protocols such as SMB, DNS, SNMP, FTP, SSH, SMTP, and NFS.Nmap NSE, enum4linux, snmpwalk
Vulnerability AssessmentIdentify vulnerabilities, insecure configurations, and outdated software.Nessus, OpenVAS, Nuclei
ExploitationValidate identified vulnerabilities through controlled testing.Metasploit, Impacket
Privilege EscalationDetermine whether elevated privileges can be obtained after initial access.WinPEAS, LinPEAS
Post-ExploitationAssess the impact of compromise and identify accessible resources.Native OS Tools, Impacket
ReportingDocument findings, evidence, impact, and remediation recommendations.Dradis, PlexTrac

Sample Report

See the full Metasploitable Pentest Report: a complete network penetration test of Metasploitable 2, covering the executive summary, methodology, 13 critical findings with working PoCs, a remediation roadmap, and a CVSS appendix.