Open Access Open Access  Restricted Access Subscription Access

INTELLIGENT AUTOMATION FRAMEWORK FOR PENETRATION TESTING AND SECURITY ASSESSMENT

Dr. Anitha. S, Pravishka D

Abstract


As cyber threats grow in complexity and frequency, the need for efficient, continuous security assessment is critical. Traditional penetration testing is often time-consuming, manual, and resource-intensive. This paper presents a modular Automated Penetration Testing Framework that automates key phases namely reconnaissance, scanning, vulnerability detection, exploitation, and reporting using open-source tools and rule-based logic. The framework reduces human error, improves test consistency, and supports real-time reporting, making it ideal for dynamic and resource-constrained environments. It also offers adaptability across various infrastructures and paves the way for future AI integrations to enhance threat detection and response.


Full Text:

PDF

References


X. Shen, L. Wang, Z. Li, Y. Chen, W. Zhao, D. Sun, J. Wang, and W. Ruan, "PentestAgent: Incorporating LLM Agents to Automated Penetration Testing," arXiv preprint arXiv:2411.05185, 2024. arXiv

L. Muzsai, D. Imolai, and A. Lukács, "HackSynth: LLM Agent and Evaluation Framework for Autonomous Penetration Testing," arXiv preprint arXiv:2412.01778, 2024. arXiv

B. Wu, G. Chen, K. Chen, X. Shang, J. Han, Y. He, W. Zhang, and N. Yu, "AutoPT: How Far Are We from the End2End Automated Web Penetration Testing?" arXiv preprint arXiv:2411.01236, 2024. arXiv

L. Gioacchini, M. Mellia, I. Drago, A. Delsanto, G. Siracusano, and R. Bifulco, "AutoPenBench: Benchmarking Generative Agents for Penetration Testing," arXiv preprint arXiv:2410.03225, 2024. arXiv

S. Zhou, J. Liu, Y. Lu, J. Yang, Y. Zhang, and J. Chen, "Mind the Gap: Towards Generalizable Autonomous Penetration Testing via Domain Randomization and Meta-Reinforcement Learning," arXiv preprint arXiv:2412.04078, 2024. arXiv

Y. Alkhurayyif and Y. S. Almarshdy, "Adopting Automated Penetration Testing Tools: A Cost-Effective Approach to Enhancing Cybersecurity in Small Organizations," Journal of Information Security and Cybercrimes Research, vol. 6, no. 1, pp. 1–10, 2024. NAUSS Journals

Z. Zhang, Y. Wang, and L. Liu, "An Automated Penetration Testing Framework Based on Hierarchical Reinforcement Learning," Electronics, vol. 13, no. 21, p. 4311, 2024. MDPI

S. Skandylas and M. Asplund, "Automated Penetration Testing: Formalization and Realization," arXiv preprint arXiv:2412.12745, 2024. arXiv

N. Schweisshelm and A. Wells, "How to Automate Penetration Testing in 2025," Hadrian, 2025. Hadrian

BrightDefense, "Hybrid Penetration Testing: What’s New in 2025,"

BrightDefense, 2025. BrightDefense


Refbacks

  • There are currently no refbacks.