Hands-on DoS and DDoS attack fundamentals lab featuring Wireshark traffic analysis, Bash and Python automation, TCP/IP analysis, and defensive mitigation techniques.
-
Updated
Jul 3, 2026 - Python
Hands-on DoS and DDoS attack fundamentals lab featuring Wireshark traffic analysis, Bash and Python automation, TCP/IP analysis, and defensive mitigation techniques.
Vulnerability Risk Assessment lab using Nessus Essentials — 69 vulnerabilities discovered, 6 Criticals (CVSS 9.8–10.0), P1–P4 risk register produced with business impact analysis. Mapped to ISO 27001 Annex A & NIST CSF. GRC-focused documentation with audit-grade remediation report.
A hands-on cybersecurity home lab built using VMware, Kali Linux, Windows Server 2019, Metasploitable 2, Nmap, Metasploit, and Wireshark for learning network security, vulnerability assessment, and SOC fundamentals.
Hands-on penetration testing labs using Metasploitable 2, Nmap, and Metasploit in a controlled lab environment.
Full network/system penetration test of Metasploitable 2 — recon → root compromise (Samba RCE, ingreslock, MySQL/PostgreSQL default creds) → post-exploitation, with reports, per-finding write-ups, ATT&CK mapping, and blue-team Sigma detection rules.
Cracked 6 out of 7 user password hashes from an intentionally vulnerable open-source Linux system (Metasploitable 2) using real-world password cracking techniques with tools like John the Ripper and Hashcat. This project was executed during my cybersecurity internship to simulate real-world password auditing on a compromised system.
Vulnerability assessment of a legacy smart city server managing traffic monitoring and smart streetlights. Conducted using Nessus and Kali Linux, mapped to CIS Controls v8.1.
Exploited and remediated a known FTP vulnerability in a home VirtualBox lab
A hands-on internal penetration testing lab covering reconnaissance, vulnerability validation, exploitation, impact analysis, and remediation.
End-to-end Metasploitable2 vulnerability management & hardening — scans, remediation, verification
Vulnerability assessment of a legacy infrastructure system acquired by XYZ Financial Services. Conducted using Nessus and Kali Linux, mapped to CIS Controls v8.1.
Network reconnaissance project using Nmap against a Metasploitable 2 virtual machine in an isolated VMware Workstation lab.
PenTest Lab 9 — OSINT, Recon & Exploitation of Metasploitable2 | Metasploit, Nmap, Censys | 4/4 Exploits Successful | ROOT Access via vsftpd & Samba CVEs
VAPT lab implementing automated vulnerability scanning and exploitation workflows. Features network reconnaissance with Nmap, targeted CVE verification via Metasploit against a sandboxed target, and root-level privilege escalation mapping.
Hands-on penetration testing write-ups against Metasploitable2 — 6 exploitation reports (vsFTPd backdoor, SSH brute-force, rlogin, Slowloris DoS, MySQL, Telnet) plus a 30-point Linux hardening checklist. Full methodology, PoC evidence, and remediation for each.
End-to-End SOC Investigation Lab using Kali Linux, Metasploitable2, Nmap, Wireshark and VirtualBox for network verification, service enumeration, traffic analysis, evidence collection and security assessment.
Hands-on Linux and security labs (Kali, Metasploitable 2, Wazuh SIEM) plus a Cisco Linux Unhatched course report — built while studying for CompTIA Security+ SY0-701 (passed July 2026).
Practical network security and ethical hacking project using Kali Linux, Metasploitable2 and Ubuntu to perform hardening, vulnerability scanning, exploitation, brute force, MiTM and social engineering tests for the Network and System Security module at CCT College.
A documented penetration testing lab built on Kali Linux and Metasploitable2, walking through a full attack chain from network traffic analysis and service enumeration through to exploiting the vsftpd 2.3.4 backdoor (CVE-2011-2523) and achieving root access. Includes blue team detection notes and MITRE ATT&CK mapping throughout.
Add a description, image, and links to the metasploitable2 topic page so that developers can more easily learn about it.
To associate your repository with the metasploitable2 topic, visit your repo's landing page and select "manage topics."