A systematic review of vulnerability analysis & penetration testing tools

 
 
 
  • Abstract
  • Keywords
  • References
  • PDF
  • Abstract


    In Computer Security, the term vulnerability refers as a flaw in the system which creates a hole, giving an attacker a chance of taking control over the system. Any Software, Web application or anything related to computer product is vulnerable to attack in different ways like code stealing, sniffing of packets, hijacking the network, making the system compromised etc. In order to avoid such attacks a constant check has to be done and the check has to be done through various Pen testing tools. Penetration tools are one which is used to perform security check on an application to find the presence of exploitable vulnerabilities. In this paper, we look over the penetration tools like CODEPULSE (the code stealer), ETTERCAP (the Sniffer and Hijacker) and made a systematic review of various websites which are vulnerable to SQL Injection and Cross-site Scripting.

     

     


  • Keywords


    Social Engineering; Penetration Testing; Exploit; SQL Injection; Cross Site Scripting; Glass Box Testing.

  • References


      [1] Improving Accuracy of Applications Fingerprinting on Local Net- works using NMAP-AMAP-ETTERCAP by Waheed Ali H. M. Ghanem School of Computer Sciences University Sains Malaysia (USM) and BahariBelaton School of Computer Sciences University Sains Malaysia (USM) Penang, Malaysia.

      [2] Code Pulse: Real time code coverage for Penetration Testing Activities by Hassan Radwan, Kenneth Prole Secure Decisions Division Applied Visions, Inc. Northport, NY, USA.

      [3] Hassan.Redwan, Ken. Prole “code pulse: Real time Code Cover- age for penetration testing Activities” IEEE.2015.

      [4] Security Quality Assurance through Penetration Testing by Kamran Shaukat University of the Punjab, Jhelum Campus. Jhelum.


 

View

Download

Article ID: 11223
 
DOI: 10.14419/ijet.v7i1.1.11223




Copyright © 2012-2015 Science Publishing Corporation Inc. All rights reserved.