IT Security Horror Story: Is your Network an Unsegmented Haunted House?
October, 2014, Mark Manousogianis, Information Security Consultant, Coalfire Labs
One day I went to a client site to perform internal penetration test to emulate the insider threat. This testing was designed to help this client understand the damage a rogue employee or an intruder who gained physical access to the network could do. The site that I was visiting was a storefront and had public WiFi. I told the store staff who I was there to meet, and while I waited for the client to become available I connected to the public WiFi just to have a look.