Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 42 guests online
 
Free Business and Tech Magazines and eBooks

You are here: Home arrow Columnsarrow Linnarrow [Article]-Video: Pen Test Walkthrough with Metasploit Pro
EH-Net
May 19, 2013, 01:58:35 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: [Article]-Video: Pen Test Walkthrough with Metasploit Pro  (Read 124877 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
*****
Online Online

Posts: 4165


Editor-In-Chief


View Profile WWW
« on: March 07, 2011, 08:36:30 PM »

EH-Net is proud to be the first with videos of the new Metasploit Pro that was just released today. Thanks to Rapid7 for the advance copy and to Ryan for being prepared to release it the same day as the release.

Permanent link: [Article]-Video: Pen Test Walkthrough with Metasploit Pro

Quote


Metasploit Pro 3.6 was released today with a slew of new features aimed at facilitating pen testers throughout the entire penetration testing process.  One such new feature is asset tagging of groups of hosts, so that they can be grouped together easily.  Utilizing another new feature, global search, makes managing large engagements a breeze.  In addition to a free webinar on March 22 with James "egyp7" Lee on the Metasploit Framework, EH-Net regular columnist, Ryan Linn, explores Metasploit Pro.  He not only shows off some of those new features but also walks the viewer through the basic steps of performing a pen test with Metasploit Pro with the following 3 videos:
   
   - Getting Started With Metasploit Pro
   - Post Exploitation
   - Reporting and Cleaning Up

As we all know, a pen test is not over when the hacking is done.  Rapid7 realizes this as well, so the new reporting capabilities are a very welcome addition.  It is now easy to generate PCI compliance notes based on the findings throughout the penetration test.  These reports indicate exactly where the failures are and actually provides evidence to support those findings.  For those that need more detailed reports on all of the activity performed throughout a penetration test, the activity report shows all commands issued and all gathered evidence.  These two reports alone can save a lot of time for testers who need to present this type of information to their clients.

For those that haven't learned to 'stop worrying and love the GUI,' Metasploit Pro now has a console mode where you can interact with Metasploit Pro just like the Community Edition.  For those that have embraced the GUI, the addition of tags allows for easy grouping of assets, and the tags can be used in many of the fields as shortcuts for specifying specific IP addresses.  This really speeds up every step in the process.

So let's get a feel for Metasploit Pro as a whole as well as the new features of v3.6.


Enjoy, let us know what you think and please suggest other videos for Ryan to tackle,
Don
Logged

CISSP, MCSE, CSTA, Security+ SME
WCNA
Full Member
***
Offline Offline

Posts: 187



View Profile
« Reply #1 on: March 08, 2011, 06:05:38 PM »

Nice videos. I love the way Metasploit Pro & Nexpose  make it easy to work up detailed security reports. It should make a pentester's job easier.
Logged

ISC2 Associate, WCNA, CWNA, OSCP, Network+
maxpeck
Newbie
*
Offline Offline

Posts: 21



View Profile
« Reply #2 on: March 22, 2011, 01:18:52 PM »

Nice webinar. Very good presentation. Great hair!

 
Logged

Max
alucian
Full Member
***
Offline Offline

Posts: 225



View Profile
« Reply #3 on: March 22, 2011, 02:09:39 PM »

Thank you very much for the webinar!

I really enjoyed it and I learned some things from it.
Logged

CISSP ISSAP, CISM/A, GWAPT, GCIH, eCPPT, OSWP
jstall
Newbie
*
Offline Offline

Posts: 3


View Profile
« Reply #4 on: March 24, 2011, 03:51:01 AM »



Excellent Webinar, thanks. Look forward to the next.
Logged

CCNA Security, GCIA, GCIH
qnix
Newbie
*
Offline Offline

Posts: 2


View Profile WWW
« Reply #5 on: March 27, 2011, 04:15:53 PM »

Amazing tool. Make a pen-tester lazy, but useful for big targets and fast and efficient reporting.
Logged

hayabusa
Hero Member
*****
Offline Offline

Posts: 1630



View Profile
« Reply #6 on: March 28, 2011, 07:42:42 AM »

Looking forward to making some time and catching the recording.  Sounds like it was a pretty good session, so I'll catch it when workload permits.
Logged

~ hayabusa ~ 

"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'


OSCE, OSCP , GPEN, C|EH
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.071 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.