Automated Penetration Testing, A Systematic Review
Author
Abstract

Penetration testing (Pen-Testing) detects potential vulnerabilities and exploits by imitating black hat hackers to stop cyber crimes. Despite recent attempts to automate Pen-Testing, the issue of automation is still unresolved. Additionally, the attempts are highly case-specific and ignore the unique characteristics of pen-testing. Moreover, the achieved accuracy is limited, and very sensitive to variations. Also, there are redundancies found in detecting the exploits using non-automated algorithms. This paper concludes the recent study in the Penetration testing field and illustrates the importance of a comprehensive hybrid AI automation framework for pen-testing.

Year of Publication
2023
Date Published
sep
URL
https://ieeexplore.ieee.org/document/10278377
DOI
10.1109/MIUCC58832.2023.10278377
Google Scholar | BibTeX | DOI