Metasploit - Penetration Testing Resources

Metasploit provides useful information and tools for penetration testers, security researchers, and IDS signature developers. This project was created to provide information on exploit techniques and to create a functional knowledgebase for exploit developers and security professionals. The tools and information on this site are provided for legal security research and testing purposes only. Metasploit is an open source project managed by Rapid7.


Announce 2009-12-23: Metasploit 3.3.3 Released!

   Version 3.3.3 of the Metasploit penetration testing framework has been released, featuring exploit safety rankings, a smaller EXE template, the addition of the InitialAutoRunScript option for Meterpreter, and the ability to run a script or command on all open sessions (sessions -c/-s). The complete release notes are online and version 3.3.3 can obtained from the downloads page.

Announce 2009-12-10: Metasploit 3.3.2 Released!

   Version 3.3.2 of the Metasploit penetration testing framework has been released, with improved NeXpose integration, multi-threaded Meterpreter, basic pivoting, updated Oracle modules, an XMLRPC backend, and 42 bug fixes. The complete release notes are online and version 3.3.2 can obtained from the downloads page. on the downloads page.

RSS The Metasploit Blog

Mar-08-2010 - Locate and Exploit the Energizer Trojan (hdm)
Feb-09-2010 - Automatically Routing Through New Subnets (egypt)
Feb-05-2010 - Postgres Fingerprinting (todb)
Feb-05-2010 - Exploiting the Samba Symlink Traversal (hdm)
Jan-15-2010 - Reproducing the "Aurora" IE Exploit (hdm)
Jan-02-2010 - Safe, Reliable, Hash Dumping (hdm)
Dec-31-2009 - Exporting the Registry for Fun and Profit (hdm)
Dec-28-2009 - Exploiting Microsoft IIS with Metasploit (hdm)

RSS Metasploit Framework Development

Mar-18-2010 - Revision 8849: Adding J Duenow's sport patch to sy...
Mar-18-2010 - Bug #1180: meterpreter sessions breaking stuff
Mar-18-2010 - Revision 8848: <pre>revert stty -echo execut...
Mar-18-2010 - Bug #1180 (New): meterpreter sessions breaking stu...
Mar-18-2010 - Revision 8847: Correct decoding
Mar-18-2010 - Bug #1109 (Assigned): Syn scanner (likely all raw ...
Mar-18-2010 - Bug #1165 (Closed): session.via_exploit being a fu...
Mar-18-2010 - Feature #395 (Closed): Session automation for stan...
Mar-18-2010 - Revision 8846: Indicate the method for using javas...
Mar-17-2010 - Revision 8845: Fixes up SunRPC to use proper timeo...
Copyright © 2003-2010 Rapid7 LLC