Metasploit Pro 5.0.0 Released With Powerful New Modules and Critical Enhancements
The release of Metasploit Pro 5.0.0 introduces significant enhancements for cybersecurity professionals. This update aligns with the growing demand for continuous red-teaming and proactive security measures in response to evolving cyber threats.
The release of Metasploit Pro 5.0.0 introduces significant enhancements for cybersecurity professionals. This update aligns with the growing demand for continuous red-teaming and proactive security measures in response to evolving cyber threats.
Metasploit Pro 5.0.0 offers a new approach to red-teaming, featuring an intuitive testing workflow, advanced Active Directory capabilities, and a suite of new modules. The updated user interface allows penetration testers to concentrate on high-value vulnerability validation.
The introduction of Network Topology support provides instant visual insights into compromised hosts, cracked credentials, and captured data. This feature is designed for large enterprise environments, facilitating navigation through complex data efficiently.
The update enhances vulnerability detection with modules that include pre-check logic, enabling a comprehensive evaluation before exploitation. This feature aids in faster decision-making and reduces the risk of failed module runs.
The release of Metasploit Pro 5.0.0 introduces significant enhancements for cybersecurity professionals.
Active Directory Certificate Services (AD CS) Exploitation
The AD CS Workflows Metamodule has been upgraded to identify nine common AD CS vulnerabilities. The update includes support for escalation flaws such as ESC9, ESC10, and ESC16, providing professionals with precise threat neutralization capabilities.
Advanced Controls and Technical Enhancements
Metasploit Pro 5.0.0 offers advanced users enhanced control, simplifying actions and providing intelligent suggestions for network targets and Kerberos credential caches. Key enhancements include:
Manual Payload Configuration: Users can manually configure individual payloads for detailed control, with default options for convenience. Session Tagging: Analysts can attach custom labels to sessions, improving collaboration and context retention. SAML Single Sign-On (SSO): Integration with centralized identity providers enables a seamless login experience using existing MFA services. One-Click Replays: Simplifies the process of verifying remediation by allowing module runs to be replayed without reconfiguration.
For more information on this release, visit Rapid7's blog .
Based on reporting by Cyber Security News.
