Team collaboration for large projects
Metasploit enables teams to collaborate for larger projects. Team members can see and search each other's action, progress, and notes to make Red Team efforts more efficient. Metasploit can scale to hundreds of concurrent sessions and thousands of target hosts to support the team efforts.
For example, after you have started with the discovery, you can take care of brute forcing machines while your colleagues emulate smart exploit attacks against the discovered hosts, pivot from compromised machines, and launch social engineering campaigns against the user base. Team members can share and search notes on hosts, for example indicating the role of a particular machine on the network. Known credentials and hashes are automatically leveraged by other team members.
If your team includes penetration testers with various levels of experience, you can ask junior members to conduct easier tasks, such as a network scan, while more senior team members take care of more advanced tasks. Junior staff can learn faster in a collaborative team because it's easier to coach them, and organizations benefit from lower project costs because they can effectively employ less expensive junior staff. When working on various penetration testing assignments at the same time, target infrastructures can be segregated into different projects and users can be assigned to each project. You can also limit users by IP ranges. Read-only accounts can be set up for stakeholders who want to monitor progress and results of an assignment.
Click to enlarge
To keep track of your project, you can freely assign tags to assets based on multiple criteria such as compliance, operation workflow and team collaboration on different operational units. Tags may be used to classify assets and document security findings, with direct integration into the reporting engine. This facilitates improved project management and reporting, in particular for large penetration testing engagements.
Using global search, you can search for tags, host names, IP addresses and annotations across projects and team members. This advanced search makes it easier to find information from previous projects or from other team members.
Finally, project reports aggregates the findings of all project members, greatly simplifying the paperwork after an engagement and providing a comprehensive report to key stakeholders.
- Related Resources
- Metasploit Pro Data Sheet
- Metasploit Express Data Sheet
Team collaboration enables penetration testers to share findings and notes definitely helps keep everyone in synch and productivity moving.”
Jim O'Gorman
Security Systems Specialist
Continuum Worldwide

