GRENZE International Journal of Engineering and Technology
Vol. 12
(2026), Issue 2
Practical Exploitation and Security Assessment of OWASP Top 10 Web Vulnerabilities
Authors
A. Neela Madheswari, Adwaith Anilkumar, M. Akash, Akshay Ajay, Arjun Balagopalan
Abstract
The rapid expansion of web applications has increased exposure to critical security risks, necessitating advanced automated assessment methodologies. This paper presents a fullstack security platform designed for Practical Exploitation and Security Assessment of OWASP Top 10 Web Vulnerabilities. Developed using the Django 4.2 framework, the system employs a defense-in-depth architecture, integrating Argon2 password hashing, AES-256-GCM encryption for sensitive data at rest, and HMAC-SHA256 for API request integrity. We detail modular scanning engines designed to detect and exploit vulnerabilities including SQL injection, XSS, and SSRF. Furthermore, the tool incorporates an automated CVSS v3.1 scoring engine for standardized risk quantification. Experimental results demonstrate the platform's effectiveness in providing real-time vulnerability management and a tamper- evident audit trail. Finally, we explore future research into Post- Quantum Cryptography and AI-driven triage to enhance defensive resilience.
Pages:
5333 - 5340