Internal network
Internal penetration testing — agent roadmap
Full internal network and Active Directory attack-path testing is on our roadmap. Today we are shipping Phase 2a: a lightweight on-prem agent for Windows and Linux that reports read-only inventory over outbound HTTPS — no inbound ports on your LAN.
What we test
- On-prem agent for Windows and Linux (Python collector; signed binaries later)
- Outbound-only HTTPS to TeckPath — no inbound firewall holes
- Read-only inventory: hostname, OS, IPs, listening ports, software sample
- Enrolled per engagement with a one-time token under the same consent gates
- Internal posture section in reports when agents report data
What you get
- Foundation for internal visibility without claiming full internal pentest yet
- Device counts and platform mix in engagement reports
- Path to patch correlation and RoE-gated active internal probes
- Same governance model: consent, scope, audit, human sign-off
FAQ
Can we buy internal pen testing today?
Not as a finished product. We offer website and external penetration testing now. Internal agent inventory is in pilot foundation; active internal testing and AD paths come after successful pilots.
What OS does the agent support?
Windows and Linux first (most common on-prem). macOS collection is supported in the same Python agent where needed.
Does the agent move laterally?
No. Phase 2a is read-only inventory on the host where it is installed. Lateral movement and credential attacks are explicitly out of scope until RoE-gated phases later.
Talk to TeckPath
Authorized engagements only. Scope and consent are required before any test runs.
