Metasploit

      Comments Off on Metasploit

Attended an interesting presentation today from Marcus Sachs, Director of the SANS Internet Storm Center. He talked about DShield and security threats in general. I was most intrigued by the few minutes he spent on Metasploit — basically a drag & drop approach to black hat hacking… or as the Metasploit project casts it, “An Open-Source platform for developing, testing, and using exploit code.”

metasploit

Came back to the office and had it downloaded and running on my Mac in about two minutes. Scary piece of work. If you remember the buzz that SATAN (Security Administrator Tool for Analyzing Networks) caused about ten years ago, this is similar. Look for Symantec or someone to release a “commercial” version of this as a network security monitor in the near future…