Jump to content

*Metasploit* Low*Level*View

Recommended Posts


Metasploit - Low Level View

Saad Talaat (saadtalaat _ gmail.com)


Abstract: for the past decade (almost) Metasploit have been number one

pentesting tool. A lot of plug-ins have been developed specially for it. However, the key-point of this paper is to discuss metasploit framework as a

code injector and payload encoder.

Another key-point of this paper is malware different forms and how to

avoid anti-viruses which have been a pain for pentesters lately. And how

exactly anti-malware software work.


Evading anti-viruses have been a painful issue for pentesters for years. On

the other hand a birth of an anti-virus evading technique means blackhats

and skiddies will have another way to hack without being detected.

Over the years metasploit framework have been working in one technique

on evading anti-viruses which is encoding.

For a year or two some encoding techniques worked fine. Nowadays It's

nearly impossible to get encoded payload that evades anti-virus from

metasploit's encoders no matter how many iterations you do.



Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Create New...