Cost / License
- Free
- Open Source
Platforms
- Windows
- Linux



Metasploit is described as 'Community Edition simplifies network discovery and vulnerability verification for specific exploits, increasing the effectiveness of vulnerability scanners such as Nexpose - for free. This helps prioritize remediation and eliminate false positives, providing true' and is a vulnerability scanner in the security & privacy category. There are more than 10 alternatives to Metasploit for a variety of platforms, including Linux, Windows, Mac, Web-based and Self-Hosted apps. The best Metasploit alternative is mimikatz, which is both free and Open Source. Other great apps like Metasploit are Exploit Pack, Sn1per Professional, Social-Engineer Toolkit and PhoneSploit Pro.



Learn about our vulnerability management software, Nexpose. See how our vulnerability scanner prioritizes vulnerabilities and speeds up remediation.
A general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence.

Mageni provides a free, open-source and enterprise-ready cybersecurity vulnerability management solution.



BabySploit is a penetration testing toolkit aimed at making it easy to learn how to use bigger, more complicated frameworks like Metasploit. With a very easy to use UI and toolkit, anybody from any experience level will find...

RedEye is an open-source analytic tool developed by CISA and DOE’s Pacific Northwest National Laboratory to assist Red Teams with visualizing and reporting command and control activities. This tool, released in October 2022 on GitHub, allows an operator to assess and display...

Live vulnerability catalog with ready-to-run exploits, rich discussions, and user-submitted findings the community helps refine.



BloodHound is a single page Javascript web application, built on top of Linkurious, compiled with Electron, with a Neo4j database fed by a C# data collector.
A cybersecurity service that provides hybrid penetration testing by combining AI automation with manual human expertise. Their core promise is "Zero False Positives," aiming to offer validated security intelligence rather than just automated scan results.


Its specialised in Android exploits.