| International Journal of Computer Applications |
| Foundation of Computer Science (FCS), NY, USA |
| Volume 187 - Number 106 |
| Year of Publication: 2026 |
| Authors: Mohammed Abdelfattah, Youssef Hamdy Abdelazeem, Mohamed Mahmoud Hanafi, Ziad Mahmoud Mohamed, Abdallah Waleed Ab-delmajeed, Ahmed Mamdouh Salem |
10.5120/ijca077168be4e15
|
Mohammed Abdelfattah, Youssef Hamdy Abdelazeem, Mohamed Mahmoud Hanafi, Ziad Mahmoud Mohamed, Abdallah Waleed Ab-delmajeed, Ahmed Mamdouh Salem . RedKit: A Lightweight Penetration Testing Framework using Docker-based Isolation. International Journal of Computer Applications. 187, 106 ( May 2026), 27-34. DOI=10.5120/ijca077168be4e15
RedKit is a Security as a Service (SECaaS) platform designed to facilitate penetration testing across the entire life cycle through a microservices architecture. RedKit includes both manual and automated testing. In manual testing, RedKit offers custom-built Docker containers as a pre-configured environment that includes a web proxy ready for testing. In automated testing, RedKit features an AI-driven vulnerability scanner to automate repetitive tests, reducing the effort required of penetra-tion testers. RedKit includes information gathering, reconnaissance tools, and AI report generation. RedKit integrates all these features into a cloud-based, all-in-one framework, a low-effort solution for end-to-end security assessments. By integrat-ing Docker and merging automated testing with manual testing, RedKit builds a full penetration testing framework with mini-mal resource overhead. By accomplishing 60% of resource management and 90% of time saving for setting up the environment.