Physical Security Assessment

Test physical and network boundaries at client workplaces

I tested hotel guest/TV network segmentation, restricted-area access and employee QR scenarios, including Raspberry Pi placement tests for a controlled C2 connection.

Growing MSSP with Offensive ServicesSecurity Engineer2 min read

I conducted physical assessments in hotel and private-equity office environments. From a booked hotel room, I tested guest-access boundaries involving other-room data and examined television-network traffic and segmentation. The question was whether access available to a guest could extend into information or systems outside that guest's intended scope.

I tested whether a Raspberry Pi or other small computer could be placed on the network to support a controlled command-and-control connection. That connected physical device placement with the network's access boundaries. I also included employee-facing QR-code exercises to examine the staff-interaction route into the environment.

The on-site work included attempts to reach back-of-house areas, server rooms and other sensitive spaces, with checks across different staff shifts. Together, these tests examined guest connections, small-device access, employee interaction and restricted physical areas.

Closer to the work

Guest-room and television networks

I worked from a booked hotel room to test boundaries around other-room data and the systems exposed through television and network connections. I examined TV-network traffic and segmentation to assess whether guest-accessible connections could reach information or systems outside their intended scope.

Open this detail ↗
Employee interaction

I used employee-facing QR-code scenarios as part of the physical assessment. They extended the testing from doors and network connections to how staff could encounter and interact with an assessment prompt.

Open this detail ↗
Small-device placement

I tested the feasibility of placing a Raspberry Pi or mini computer on the network for a controlled command-and-control connection. This examined the relationship between physical device access and the network's access boundaries.

Open this detail ↗
Restricted spaces and shift differences

I attempted access toward back-of-house areas, server rooms and other sensitive spaces and included different staff shifts in the assessment. The work compared physical access conditions and the routes that needed to be tested.

Open this detail ↗

Skills established through this work

This work connects to

Offensive security

Your exploration

Viewed history

Saved only in this browser.

Ask my portfolio

Ask about my work.

Skills, achievements, technical detail. Follow the evidence.

Every answer links to the work.
How this works

When AI is connected, your question, recent questions and relevant published pages are sent to MiniMax to select supporting passages. Otherwise, this searches the site directly. Answers quote the saved website and link to their sources. This website does not save chat transcripts. Clearing or leaving the page clears this conversation.