Metasploit Server Detection
Info Nessus Network Monitor Plugin ID 3806
SynopsisThe remote host is running software that should be authorized with respect to corporate policy.
DescriptionThe remote server was just observed making a connection to updates.metasploit.com. This connection attempt usually indicates a Metasploit server that is downloading updates from the metasploit.com web site. Metasploit is an attack framework that allows users to automatically exploit and backdoor vulnerable applications via the network.
SolutionEnsure that this application is authorized according to corporate policies and guidelines.