Internal network

Internal penetration testing — agent roadmap

Full internal network and Active Directory attack-path testing is on our roadmap. Today we are shipping Phase 2a: a lightweight on-prem agent for Windows and Linux that reports read-only inventory over outbound HTTPS — no inbound ports on your LAN.

Roadmap — pilot foundation shipping

What we test

  • On-prem agent for Windows and Linux (Python collector; signed binaries later)
  • Outbound-only HTTPS to TeckPath — no inbound firewall holes
  • Read-only inventory: hostname, OS, IPs, listening ports, software sample
  • Enrolled per engagement with a one-time token under the same consent gates
  • Internal posture section in reports when agents report data

What you get

  • Foundation for internal visibility without claiming full internal pentest yet
  • Device counts and platform mix in engagement reports
  • Path to patch correlation and RoE-gated active internal probes
  • Same governance model: consent, scope, audit, human sign-off

FAQ

Can we buy internal pen testing today?

Not as a finished product. We offer website and external penetration testing now. Internal agent inventory is in pilot foundation; active internal testing and AD paths come after successful pilots.

What OS does the agent support?

Windows and Linux first (most common on-prem). macOS collection is supported in the same Python agent where needed.

Does the agent move laterally?

No. Phase 2a is read-only inventory on the host where it is installed. Lateral movement and credential attacks are explicitly out of scope until RoE-gated phases later.

Talk to TeckPath

Authorized engagements only. Scope and consent are required before any test runs.