Skip to content

A simulated vulnerability assessment of Zero Health’s internal network. Identified critical CVEs, performed risk analysis, and proposed mitigation strategies using tools like Nmap, , and Netdiscover. Follows NIST, OWASP, and PTES methodologies.

Notifications You must be signed in to change notification settings

LyticOnaope/ZHVA

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 
 
 

Repository files navigation

🛡️ Zero Health Vulnerability Assessment

A simulated vulnerability assessment project for a fictional health tech company, Zero Health Corp. The goal was to evaluate the security posture of the internal network and identify exploitable vulnerabilities using ethical hacking techniques.

📌 Overview

  • Type: Internal Network Vulnerability Assessment
  • Tools: Nmap, Netdiscover, OSINT, Manual CVE Analysis
  • Standards Followed: NIST SP 800-115, OWASP, PTES

🔍 Key Activities

  • Network Discovery using Netdiscover
  • Service Enumeration via Nmap
  • CVE Research and Threat Analysis
  • Risk Classification (CVSS)
  • Remediation Planning

⚠️ Top Findings

  • OpenSSH Buffer Overflow (CVE-2002-0575)
  • Apache Directory Traversal (CVE-2000-0505)
  • Samba Remote Code Execution (ETERNALRED) (CVE-2017-7494)
  • rpc.lockd DoS (Unnamed CVE)

💡 Key Takeaways

Security is proactive, not reactive. Regular assessments help reduce critical exposure, especially in healthcare environments.


Project by: Onaopemipo Olugbemiro
🔗Linkedin 📧Email

About

A simulated vulnerability assessment of Zero Health’s internal network. Identified critical CVEs, performed risk analysis, and proposed mitigation strategies using tools like Nmap, , and Netdiscover. Follows NIST, OWASP, and PTES methodologies.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published