Hands-on DoS and DDoS attack fundamentals lab featuring Wireshark traffic analysis, Bash and Python automation, TCP/IP analysis, and defensive mitigation techniques.
-
Updated
Jul 3, 2026 - Python
Hands-on DoS and DDoS attack fundamentals lab featuring Wireshark traffic analysis, Bash and Python automation, TCP/IP analysis, and defensive mitigation techniques.
Vulnerability Risk Assessment lab using Nessus Essentials — 69 vulnerabilities discovered, 6 Criticals (CVSS 9.8–10.0), P1–P4 risk register produced with business impact analysis. Mapped to ISO 27001 Annex A & NIST CSF. GRC-focused documentation with audit-grade remediation report.
A hands-on cybersecurity home lab built using VMware, Kali Linux, Windows Server 2019, Metasploitable 2, Nmap, Metasploit, and Wireshark for learning network security, vulnerability assessment, and SOC fundamentals.
Cracked 6 out of 7 user password hashes from an intentionally vulnerable open-source Linux system (Metasploitable 2) using real-world password cracking techniques with tools like John the Ripper and Hashcat. This project was executed during my cybersecurity internship to simulate real-world password auditing on a compromised system.
Hands-on penetration testing labs using Metasploitable 2, Nmap, and Metasploit in a controlled lab environment.
Full network/system penetration test of Metasploitable 2 — recon → root compromise (Samba RCE, ingreslock, MySQL/PostgreSQL default creds) → post-exploitation, with reports, per-finding write-ups, ATT&CK mapping, and blue-team Sigma detection rules.
Vulnerability assessment of a legacy smart city server managing traffic monitoring and smart streetlights. Conducted using Nessus and Kali Linux, mapped to CIS Controls v8.1.
A documented penetration testing lab built on Kali Linux and Metasploitable2, walking through a full attack chain from network traffic analysis and service enumeration through to exploiting the vsftpd 2.3.4 backdoor (CVE-2011-2523) and achieving root access. Includes blue team detection notes and MITRE ATT&CK mapping throughout.
This project demonstrates network reconnaissance and service enumeration using Kali Linux and Nmap against an intentionally vulnerable Metasploitable 2 virtual machine. The project was performed in a controlled VirtualBox lab environment.
End-to-end Metasploitable2 vulnerability management & hardening — scans, remediation, verification
PenTest Lab 9 — OSINT, Recon & Exploitation of Metasploitable2 | Metasploit, Nmap, Censys | 4/4 Exploits Successful | ROOT Access via vsftpd & Samba CVEs
Practical network security and ethical hacking project using Kali Linux, Metasploitable2 and Ubuntu to perform hardening, vulnerability scanning, exploitation, brute force, MiTM and social engineering tests for the Network and System Security module at CCT College.
End-to-End SOC Investigation Lab using Kali Linux, Metasploitable2, Nmap, Wireshark and VirtualBox for network verification, service enumeration, traffic analysis, evidence collection and security assessment.
VAPT lab implementing automated vulnerability scanning and exploitation workflows. Features network reconnaissance with Nmap, targeted CVE verification via Metasploit against a sandboxed target, and root-level privilege escalation mapping.
Hands-on network security lab using pfSense to configure firewall rules, DHCP reservations, host aliases, traffic controls, packet capture, and firewall validation within a physical cybersecurity homelab.
Hands-on penetration testing write-ups against Metasploitable2 — 6 exploitation reports (vsFTPd backdoor, SSH brute-force, rlogin, Slowloris DoS, MySQL, Telnet) plus a 30-point Linux hardening checklist. Full methodology, PoC evidence, and remediation for each.
Vulnerability assessment of a legacy infrastructure system acquired by XYZ Financial Services. Conducted using Nessus and Kali Linux, mapped to CIS Controls v8.1.
Exploited and remediated a known FTP vulnerability in a home VirtualBox lab
Network reconnaissance project using Nmap against a Metasploitable 2 virtual machine in an isolated VMware Workstation lab.
A comprehensive penetration testing report detailing 46 security vulnerabilities discovered during a full-scope assessment of a Metasploitable2 lab environment. Findings include Network Services, Web Applications, Privilege Escalation, and Enumeration vulnerabilities.
To associate your repository with the metasploitable2 topic, visit your repo's landing page and select "manage topics."