Cost / License
- Free
- Open Source
Platforms
- Windows
- Linux



Metasploit is described as 'Community Edition simplifies network discovery and vulnerability verification for specific exploits, increasing the effectiveness of vulnerability scanners such as Nexpose - for free. This helps prioritize remediation and eliminate false positives, providing true' and is a vulnerability scanner in the security & privacy category. There are more than 10 alternatives to Metasploit for a variety of platforms, including Linux, Windows, Mac, Web-based and Self-Hosted apps. The best Metasploit alternative is mimikatz, which is both free and Open Source. Other great apps like Metasploit are Exploit Pack, PhoneSploit Pro, Social-Engineer Toolkit and Sn1per Professional.



Learn about our vulnerability management software, Nexpose. See how our vulnerability scanner prioritizes vulnerabilities and speeds up remediation.
A general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence.

Mageni provides a free, open-source and enterprise-ready cybersecurity vulnerability management solution.



BabySploit is a penetration testing toolkit aimed at making it easy to learn how to use bigger, more complicated frameworks like Metasploit. With a very easy to use UI and toolkit, anybody from any experience level will find...

RedEye is an open-source analytic tool developed by CISA and DOE’s Pacific Northwest National Laboratory to assist Red Teams with visualizing and reporting command and control activities. This tool, released in October 2022 on GitHub, allows an operator to assess and display...

Pabit is a modern project management and task tracking tool designed to help teams organize work without unnecessary complexity. It provides tasks, sprints, project modules, and real-time analytics in a clean and intuitive interface.
BloodHound leverages graph theory to reveal hidden and often unintended relationships across identity and access management systems.
A cybersecurity service that provides hybrid penetration testing by combining AI automation with manual human expertise. Their core promise is "Zero False Positives," aiming to offer validated security intelligence rather than just automated scan results.


Its specialised in Android exploits.