<div>More importantly than any of this is how great it is for vulnerability research. Makes it much easier to encode shell code, etc. Plus the msfpescan features are bad assery. Of course, n3td3v has no ideas what these features are for so he thinks it's a script kiddy tool.</div>
<div> </div>
<div>Andrew, you're so predictably boring... is there not something you have expertise on that you can talk about?</div>
<div> </div>
<div>Obviously you're not in the right place on this list.</div>
<div> </div>
<div>Nate<br><br> </div>
<div><span class="gmail_quote">On 5/5/08, <b class="gmail_sendername"><a href="mailto:Valdis.Kletnieks@vt.edu">Valdis.Kletnieks@vt.edu</a></b> <<a href="mailto:Valdis.Kletnieks@vt.edu">Valdis.Kletnieks@vt.edu</a>> wrote:</span>
<blockquote class="gmail_quote" style="PADDING-LEFT: 1ex; MARGIN: 0px 0px 0px 0.8ex; BORDER-LEFT: #ccc 1px solid">On Sun, 04 May 2008 16:27:49 BST, n3td3v said:<br>> On Fri, May 2, 2008 at 9:32 AM, Nate McFeters <<a href="mailto:nate.mcfeters@gmail.com">nate.mcfeters@gmail.com</a>> wrote:<br>
> > Oh that... Yeah, shame on hd... Maybe he was busy updating metasploit<br>> > so that real researchers have a great vulnerability development<br>> > framework, or something else that provided some worth to people.<br>
><br>> Maybe he was busy updating Metasploit so that script kids have a great<br>> vulnerability development framework.<br>><br>> He should stop providing them with a great vulnerability development framework.<br>
<br>There's 2 really great uses for metasploit for white hat security guys:<br><br>1) When you're handed a /16 or two during a pen test, and need a quick way<br>to poke a whole bunch of machines for a vulnerability, it's hard to roll-your-own<br>
exploit tester as fast as you can chinese-menu one in metasploit.<br><br>2) It's a *great* tool for impressing on a PHB just how easy it is to launch<br>an exploit for something at one of the unsecured systems he's responsible for.<br>
<br><br>_______________________________________________<br>Full-Disclosure - We believe in it.<br>Charter: <a href="http://lists.grok.org.uk/full-disclosure-charter.html">http://lists.grok.org.uk/full-disclosure-charter.html</a><br>
Hosted and sponsored by Secunia - <a href="http://secunia.com/">http://secunia.com/</a><br><br></blockquote></div><br>