This project documents a controlled internal penetration test performed against a deliberately vulnerable Linux virtual machine.
The objective was to simulate a basic penetration-testing workflow, including:
- Lab environment setup
- Network and service enumeration
- Vulnerability identification
- Manual validation
- Impact analysis
- Risk classification
- Remediation recommendations
The assessment was conducted entirely within an isolated VirtualBox host-only network.
| Component | Details |
|---|---|
| Attacker Machine | Kali Linux |
| Target Machine | Metasploitable 2 |
| Virtualization | Oracle VirtualBox |
| Network Type | Host-only Adapter |
| Target IP | 192.168.56.3 |
| Assessment Type | Internal Network Penetration Test |
The assessment was limited to the following authorized target:
192.168.56.3