
Vulnerability Assessment & Risk Rating
Complete Vulnerability Assessment & Risk Rating in a deterministic practice workspace without depending on unavailable host, cloud, hardware, desktop, or multi-node infrastructure.
Briefing
Objectives
- 1Prepare workspace and verify tooling
- 2Prepare local target for Vulnerability Assessment & Risk Rating
- 3Execute Vulnerability Assessment & Risk Rating technique
- 4Capture evidence
- 5Complete OpenVAS Scanner
- 6Complete CVSS Calculator
- 7Tune and interpret
- 8Compile and verify submission
Flags
Submit the key finding or status reported by the scan for OpenVAS Scanner (e.g., open, 200, or version string from local output).
Submit the verifiable output value for CVSS Calculator as produced by the local tool on 127.0.0.1 (e.g., version, status, IP, or header).
Submit the synthesized artifact value for Risk Matrix Creator (e.g., IP 127.0.0.2 or zone name) as verified by dig or cat /etc/bind/.
Submit the verifiable output value for ATT&CK Mapper as produced by the local tool on 127.0.0.1 (e.g., version, status, IP, or header).
Submit the verifiable output value for Dashboard Builder as produced by the local tool on 127.0.0.1 (e.g., version, status, IP, or header).