Topic coverage
Penetration Testing topics we can work through with your actual brief
The page focuses on systems behaviour, configuration, protocols, infrastructure and defensive analysis. Each topic below should connect to a deliverable, test or explanation instead of appearing as isolated terminology.
01Authorised reconnaissance methodology
For authorised reconnaissance methodology, first define the expected behaviour or result, then apply it to the coursework brief using Kali Linux. Capture evidence that demonstrates the result and explain how it relates to systems behaviour, configuration, protocols, infrastructure and defensive analysis.
02Vulnerability assessment in lab targets
When the brief includes vulnerability assessment in lab targets, identify exactly what the marker expects to inspect. Build or analyse that part with Nmap, record meaningful evidence, and connect the outcome to technically accurate work within the authorised coursework scope.
03Web and network testing evidence
A useful way to approach web and network testing evidence is to separate the concept from the deliverable. Work through a small example, verify it with Burp Suite, and only then scale the reasoning to the full assignment requirement.
04Risk rating and finding validation
Risk rating and finding validation often earns marks in more than one place: implementation, testing and explanation. Use Wireshark to make the work reproducible, then discuss the important assumptions, edge cases and limitations.
05Remediation and reflective reporting
For remediation and reflective reporting, first define the expected behaviour or result, then apply it to the coursework brief using OWASP guidance. Capture evidence that demonstrates the result and explain how it relates to systems behaviour, configuration, protocols, infrastructure and defensive analysis.