Prerequisite Tools
VirtualBox – To run VMs for lab setup
🔗 [Link]
Kali Linux ISO – Popular Linux distro for penetration testing
🔗 [Link]
VMware Workstation Player (Optional) – Alternative to VirtualBox
🔗 [Link]
OWASP Broken Web Applications (BWA) / DVWA / Metasploitable – Vulnerable machines
for practice
DVWA: [Link]
Metasploitable 2: [Link]
BWA: [Link]
🔍 VAPT Phases & Tools
1. Reconnaissance (Information Gathering)
Nmap – Network discovery and port scanning
🔗 [Link]
Recon-ng – Web reconnaissance framework
🔗 [Link]
theHarvester – Email, domain, and employee enumeration
🔗 [Link]
Shodan – Internet-connected device search
🔗 [Link]
2. Scanning & Enumeration
Nmap – (Again, for detailed service and OS detection)
🔗 [Link]
Nikto – Web server vulnerability scanner
🔗 [Link]
Dirb / Dirbuster – Directory brute-forcing
Dirb: [Link]
Dirbuster: [Link]
3. Vulnerability Assessment
OpenVAS (Greenbone) – Vulnerability scanner
🔗 [Link]
Nessus (by Tenable) – Comprehensive scanner (free trial available)
🔗 [Link]
Vulners – Search engine for known vulnerabilities
🔗 [Link]
4. Exploitation
Metasploit Framework – Exploitation toolkit
🔗 [Link]
SQLMap – SQL injection automation tool
🔗 [Link]
ExploitDB – Repository of public exploits and PoCs
🔗 [Link]
5. Post-Exploitation
Meterpreter (via Metasploit) – Post-exploitation shell
🔗 [Link]