Lab 5 - Introduction to penetration testing using Kali Linux


The goal of this lab is to begin to explore Kali, a Linux system used to probe and test systems for vulnerabilities.


  1. Introduction to Kali
  2. Web_Penetration_Testing_with_Kali_Linux.pdf: Web Penetration Testing with Kali
For this Lab read chapter 1 from Web Penetration Testing with Kali.

Step 1 - Install and setup Kali

Kali Linux is available here or from your instructor as a ready to run VM.

  1. Copy the decompressed Kali directory into you vmware folder
  2. Start VMWare Workstation 10.
  3. Browse to the VM, and open it. You should set the network to "NAT"
  4. Start the Kati system VM.
  5. Login with user root, password toor.
  6. Kali does no seem to set networking automatically. Open a terminal in Kali, type "dhclient -v eth0"
  7. Try to ping Google DNS:

Step 2 - Reconnaissance

  1. View the Robots.txt at Try several others. What do you learn from this?
  2. Use the way back machine to view old versions of SHJC and MVNU web sites. Try a few others.
  3. Use ARIN.NET to look up MVNU and 2 other organizations.
