The Metasploit Framework is an open-source penetration testing platform that helps security professionals identify vulnerabilities and weaknesses in computer systems.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Collection of vulnerable ARM binaries for beginner vulnerability researchers & exploit developers.
A C2 front flow control tool designed to evade detection by Blue Teams, AVs, and EDRs.
An open source network penetration testing framework with automatic recon and scanning capabilities.
A macOS Initial Access Payload Generator for penetration testing and red teaming exercises.
Pwndrop is a self-deployable file hosting service for red teamers, allowing easy upload and sharing of payloads over HTTP and WebDAV.
DueDLLigence is an open-source tool for identifying and analyzing DLL hijacking vulnerabilities in Windows applications, providing automated analysis and remediation guidance.
Tool for exploiting Sixnet RTUs to gain root level access with little effort.
Utilizes dirtyc0w kernel exploit for privilege escalation in a Docker container.
A full-featured reconnaissance framework for web-based reconnaissance with a modular design.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.