How to do it...

Let's assume we have shell access to a machine. We run ipconfig and find that the machine is connected to two other networks internally:

Now we nmap scan the network and find some machines with a couple of ports open. You learned about a cool way of pivoting into the networks so that we can access the applications running behind other network on our machine.

We will do a ssh port forward using the following command:

ssh –L <our port> <remote ip> <remote port> username@IP

Once this is done, we open the browser and go to the port number we used:

We will have access to the application running on the remote host.