CyberLabs
Penetration Testing Hub · cyberlabs.ie
Internal Network Security Checklist
Eight checks to run on your own network before a professional test — the pre-engagement audit that makes any test cheaper and more useful.
Before you test — Only test networks you own or have explicit written permission to test. Unauthorised access is a criminal offence in Ireland under the Criminal Justice (Offences Relating to Information Systems) Act 2017.
Know your estate
You have an up-to-date inventory of what's actually on the network — including the things nobody owns any more. Old services, test boxes and forgotten subdomains have been found and dealt with. Credentials & access
No default or shared credentials on switches, routers, printers, cameras, iLO/iDRAC or hypervisors. Domain admin membership is minimal and no service accounts have needless privilege. Management interfaces (RDP, SSH, web consoles) aren't reachable from ordinary user subnets. Segmentation & hygiene
Network segmentation is real: guest, OT and user VLANs can't freely reach servers or management. SMB signing is enforced and legacy protocols (SMBv1, LLMNR/NBT-NS) are disabled. Backups are offline or immutable — and you've actually restored from them.