• Home
  • Search
  • Penetration Testing on Sandbox environment
  • https://doi.org/10.58014/aubh.30580169Copy DOI Icon

Penetration Testing on Sandbox environment

Show More
  • Abstract
  • Literature Map
  • Similar Papers
Abstract

This capstone project shows the creation and implementation of a virtual environment for the use of penetration testing. This aims to identify vulnerabilities within IT in- frastructure. With a world that is heavily reliant on digital systems, the cybersecurity threats are evolving at a rapid pace which highlights the necessary measurements needed for effective security measures. This project showcases the challenges that are faced by organizations using outdated systems with unpatched vulnerabilities. This exposes them to potential data breaches and substantial financial losses as well as reputational damage.The virtual lab replicates a corporate IT infrastructure with different operating systems including windows, Linux, android as well as web application and network configurations. using both internal and external penetration testing, this is targeting vulnerabilities such as SQL injection, cross-site scripting (XSS), privilege escalation etc. Tools like SQLMap, Metasploit and others are used to simulate real-world attack scenarios. Each one thoroughly documented, a detailed analysis will provide insight into potential exploitation and mitigation strategies.The outcome of this project will include identifying critical security flaws and offering recommendations to enhance security. In addition, this project gives an educational standpoint onto showcasing the value of pen testing, or ethical hacking in the practices of today’s cyber security. These findings showcase how the need for penetration testing will give organizations a framework to protect against threats effectively.For future work, this will involve expanding the lab for more modern threats as they are evolving, as well as introducing more automated penetration testing processes to ease the workload and to keep up with the expanding of IoT’s, In addition this project contributes to the broader field of cybersecurity by giving a more clear understanding Aswell as implementation of practical security measures in the world, specifically IT environments.

Similar Papers
  • Research Article
  • Citations1

Website Vulnerability Scanning System

  • Mar 27, 2025
  • INTERANTIONAL JOURNAL OF SCIENTIFIC RESEARCH IN ENGINEERING AND MANAGEMENT
  • Immadisetti Kalyan Manohar +2
  • Book Chapter
  • Citations6

Decomposition-Compensation Method for IT Service Management

  • Jan 01, 2017
  • Oleksandr Rolik +2
  • Research Article
  • Citations4

Ensuring cybersecurity of FPGA as a service with the use of penetration testing of components

  • Apr 23, 2024
  • Radioelectronic and Computer Systems
  • Artem Tetskyi +4
  • Conference Article
  • Citations3

Implementation of Distributed Attack Penetration Testing Automation Using Dynamic Infrastructure Framework Axiom on Web-Based Systems

  • Nov 07, 2023
  • Pratama Aji Prisadi +3
  • Conference Article
  • Citations10

TCADS: Trustworthy, Context-Related Anomaly Detection for Smartphones

  • Sep 01, 2012
  • Ingo Bente +4
  • Research Article
  • Citations4

New Financial Transaction Security Concerns in Mobile Commerce

  • Jan 01, 2002
  • Information & Security: An International Journal
  • Raj Gururajan
  • PDF
  • Research Article
  • Citations4

Models and scenarios of implementation of threats for internet resources

  • Dec 18, 2020
  • Russian Technological Journal
  • S A Lesko
  • Conference Article
  • Citations5

High-risk Problem of Penetration Testing of Power Grid Rainstorm Disaster Artificial Intelligence Prediction System and Its Countermeasures

  • Nov 01, 2019
  • Yu Ye +5
  • Conference Article
  • Citations9

Performance Comparison on SQL Injection and XSS Detection using Open Source Vulnerability Scanners

  • Oct 06, 2021
  • Busra Zukran +1
  • Research Article

Autopen Test: Leveraging Automation for Real-Time Web Vulnerability Scanning

  • Apr 23, 2025
  • INTERNATIONAL JOURNAL OF SCIENTIFIC RESEARCH IN ENGINEERING AND MANAGEMENT
  • Snehlata Mishra
  • Book Chapter
  • Citations10

A Fuzzy Classifier-Based Penetration Testing for Web Applications

  • Jan 01, 2018
  • J K Alhassan +5
  • Conference Article
  • Citations17

Gamifying mobile micro-learning for continuing education in a corporate IT environment

  • May 01, 2016
  • Laurie Butgereit
  • Conference Article
  • Citations63

Penetration Testing Tool for Web Services Security

  • Jun 01, 2012
  • Christian Mainka +2
  • Research Article
  • Citations2

An Automated Post-Exploitation Model for Cyber Red Teaming

  • Feb 28, 2023
  • International Conference on Cyber Warfare and Security
  • Ryan Benito +2
  • Conference Article
  • Citations4

Runtime Input Validation for Java Web Applications using Static Bytecode Instrumentation

  • Oct 11, 2016
  • Sangwook Cho +5
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.