In Week 06 of my CEH v13 learning journey, I explored vulnerability assessment using two industry-standard tools: Tenable Nessus and Acunetix Web Vulnerability Scanner.
This exercise focused on identifying, analyzing, and reporting security vulnerabilities in both system-level and web application environments.
| Tool | Purpose |
|---|---|
| Tenable Nessus | System/Host Vulnerability Scanning |
| Acunetix | Web Application Vulnerability Scanning |
- Installed on Windows 10
- Used Temp-Mail for trial activation
- Plugins updated and scanner configured
- Performed Advanced Scan for CVEs and system misconfigurations
- Target:
http://testphp.vulnweb.com/ - Scanned for OWASP Top 10 vulnerabilities
- Identified insecure configurations, input flaws, and security headers
- 📝 Nessus Scan Report (PDF)
- 📝 Acunetix Web Scan Report (PDF)
📥 Reports are located in the
/Reportsdirectory of this repository.
- Vulnerability Assessment Methodology
- Host & Application Scanning
- CVE Identification & Risk Categorization
- Security Report Analysis
- Ethical Hacking Best Practices
This assessment was carried out strictly for educational purposes as part of the CEH v13 learning program. All scans were conducted on authorized or intentionally vulnerable environments only. No unauthorized systems were targeted or harmed.


