Skip to content
← LibraryTechnique entry
IOT-UPNP-ABUSELateral Movement

UPnP Port-Forward Abuse

Internet-facing router accepts UPnP IGD AddPortMapping from the LAN side without check — pivot to internal hosts via attacker-opened ports.

§ Where this technique fits

IOT-UPNP-ABUSE is catalogued under the Lateral Movement tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.