All projects
Done · Kali · Nmap · GVM · Security

A map of where it can break.

Built a vulnerability inventory and risk assessment for an infrastructure using Kali Linux tooling. Stopped guessing what was exposed.

Case study
01 · Problem

No map of exposed services.

No central inventory of services or known CVEs across the infrastructure. Without it, prioritization is guesswork and the SOC fires blind.

02 · Approach

Sweep + scan + score.

Network sweeps with Nmap for service identification. Greenbone (GVM) for authenticated and unauthenticated vulnerability scans. Findings classified by severity and ownership.

03 · Outcome

Living vulnerability inventory.

A living vulnerability inventory and a prioritization report. Risky surfaces became visible to the team and the SOC, and triage routing became deterministic.

Tech stack
Kali Linux Nmap Greenbone (GVM) CVSS scoring Reporting
What I learned

Scanners are loud. The real work is reducing noise and routing findings to the team that can actually fix them - otherwise the report becomes shelf-ware.