Repository logo
  • English
  • Español
  • Log In
    New user? Click here to register. Have you forgotten your password?
Repository logo
  • Communities & Collections
  • All
  • English
  • Español
  • Log In
    New user? Click here to register. Have you forgotten your password?
  1. Home
  2. Browse by Author

Browsing by Author "Mateus Rendon, Erick Steven"

Now showing 1 - 1 of 1
Results Per Page
Sort Options
  • No Thumbnail Available
    Item
    Análisis de pruebas de penetración en sistemas y servicios web
    (Universidad Santiago de Cali, 2024) Mateus Rendon, Erick Steven; Chaves Cárdenas, Dalessandro; González Mejía, Erick Santiago; Rojas Montes, Javier Salvador (Director)
    IT services face various risks, mainly from cyber attacks. Web penetration testing determines whether a web system is vulnerable to attacks using tools and techniques that are usually used by penetration specialists who are dedicated to identifying vulnerabilities in these. Case studies are presented in order to expose an adequate management of cybersecurity, using specialized tools such as Nessus, which includes a practical case of a university where this tool is used to evaluate the security of its websites, and also Metasploit, which together with the Kali Linux operating system addresses a practical case where IoT devices are completely compromised. The review was prepared using the PRISMA methodology, selecting 70 articles and of which 26 articles were used. This methodology guarantees the quality and reliability of the sources. Web penetration testing evaluated vulnerabilities using black, white and gray box approaches, using manual and/or automated techniques. Web penetration testing consists of a 5-phase methodology: planning, scanning, exploitation, maintaining access and generating reports. In conclusion, it was found that the combination of penetration testing approaches (black, white and grey box), together with the use of emerging technologies such as artificial intelligence, not only optimizes vulnerability detection, but also strengthens system security. The incorporation of automated tools and advanced attack simulation allows organizations to mitigate potential impacts and protect their systems more efficiently.

Higher Education Institution subject to inspection and surveillance by the Ministry of National Education.
Legal status granted by the Ministry of Justice through Resolution No. 2,800 of September 2, 1959.
Recognized as a University by Decree No. 1297 of 1964 issued by the Ministry of National Education.

Institutionally Accredited in High Quality through Resolution No. 018144 of September 27, 2021, issued by the Ministry of National Education.

Ciudadela Pampalinda

Calle 5 # 62-00 Barrio Pampalinda
PBX: +57 (602) 518 3000
Santiago de Cali, Valle del Cauca
Colombia

Headquarters Centro

Carrera 8 # 8-17 Barrio Santa Rosa
PBX: +57 (602) 518 3000
Santiago de Cali, Valle del Cauca
Colombia

Palmira Section

Carrera 29 # 38-47 Barrio Alfonso López
PBX: +57 (602) 284 4006
Palmira, Valle del Cauca
Colombia

DSpace software copyright © 2002-2025 LYRASIS

  • Cookie settings
  • Privacy policy
  • End User Agreement
  • Send Feedback

Hosting & Support