Assignment 3 The contents contained in this document may not be reproduced in any form or by any means, without the written permission of VIT, other than for the purpose for which it has been supplied. VIT and its logo are trademarks of Victorian Institute of Technology.Research and Presentation on security vulnerabilitytools using Kali Linux1. Group FormationFor this assignment, students need to form groups of 4 to 5 members under the supervision ofLecturer/Tutor. Each group must be formed of 4 to 5 students. In case there is a small group(such as with remaining two students), then the Lecturer/Tutor can rebalance the groups toensure that there are no “small” groups.2. Topic SelectionEach group needs to select one of the following security vulnerability testing tools of Kali

SqlMap is a Kali Linux tool to find out vulnerability using SQL injection into the website. An SQL injection is a code technique which attacker perform on the website. SqlMap is an open source tool to find out the vulnerability inthe database and get access tothe database and retrieve data from it. First SqlMap detects the vulnerability in SQL Database and then exploit it using SQL malicious queries. First, we need to find out the vulnerable website and then using Kali Linux tool we can perform the experiment. SqlMap uses with kali Linux in the terminal, and it is in built tool when we install kali Linux.


Kali Linux is an open source operating system which used of penetration testing and finding vulnerability into system or network using different tools. It provides various types of tools to perform testing. The most know tools are SqlMap, Nmap, Burp suite, Metaslpoit framework. SqlMap is a tool which use SQL Injection method to find out vulnerability into the website and backend works on databases. Kali Linux is a tool which uses Linux distribution, we can install Kali Linux on the virtualized environment to perform testing. To install Kali Linux need to download from its official website and then install in Virtual Machine. (Sinha, 2018, p. xx)

