Which scenario BEST illustrates horizontal movement within a compromised network?

Prepare for the Penetration Testing and Vulnerability Analysis Test with a range of challenging questions. Study with multiple choice format, hints, and detailed explanations to ace your next exam!

Multiple Choice

Which scenario BEST illustrates horizontal movement within a compromised network?

Explanation:
Horizontal movement means moving from one machine to another within a compromised network while keeping the same level of access, using existing credentials to access data across multiple hosts rather than raising privileges. The scenario where the tester uses the same user account privileges to access shared folders on other systems and searches for sensitive documents is a clear example: it shows traversing the internal network and accessing data on multiple hosts without escalating privileges, which is exactly what horizontal movement describes. The other options don’t fit as neatly. Moving through the network at the same privilege level but focusing only on data available at that level can be vague about crossing to other machines. Privilege escalation on the initial host to obtain administrative access on the next system describes vertical movement, not horizontal. Targeting external services avoids internal lateral movement altogether.

Horizontal movement means moving from one machine to another within a compromised network while keeping the same level of access, using existing credentials to access data across multiple hosts rather than raising privileges. The scenario where the tester uses the same user account privileges to access shared folders on other systems and searches for sensitive documents is a clear example: it shows traversing the internal network and accessing data on multiple hosts without escalating privileges, which is exactly what horizontal movement describes.

The other options don’t fit as neatly. Moving through the network at the same privilege level but focusing only on data available at that level can be vague about crossing to other machines. Privilege escalation on the initial host to obtain administrative access on the next system describes vertical movement, not horizontal. Targeting external services avoids internal lateral movement altogether.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy