Back to Programs

Security

Metasploit

World’s most used penetration testing framework

assemblycdatabasepostgresqlpythonruby

Participation history

7 GSoC years

2026

3 projects

Official year page

CertificateTrace and KerberosTicketTrace Support

This proposal aims to improve observability for Kerberos- and certificate-based authentication workflows in Metasploit. At present, operators often...

Automated Vulnerable Environment Provisioning for Metasploit

Many Metasploit modules include documentation describing how to manually build vulnerable test environments. However, these setup steps are performed...

Inline Kerberos and Certificate Trace Presenters for the Metasploit Framework

This proposal introduces two new inline tracing capabilities for the Metasploit Framework-KerberosTicketTracePresenter and CertificateTracePresenter...

2023

1 project

Official year page

LDAP Capture Capabilities

This project aims to deliver a module to add capture capabilities over the LDAP protocol. This module will allow the capture of LDAP traffic and...

2022

1 project

Official year page

Implementing HTTP-Trace enabled Login Scanners

This project aims to implement the HTTP-Trace option for login scanner modules. When enabled, the HTTP-Trace option lets the user see every web...

2021

1 project

Official year page

Improving Post-Exploitation API

With this project I want to add the following enhancements Closing Feature gaps between meterpreter, shell and powershell sessions Many Post APIs...

2020

2 projects

Official year page

Advancing Metasploit modules: Implementing Conditionally Exposed Options and Session-Style Module Interaction

With this project I want to conditionally show the options for a module (only the necessary) when you are configuring these options, so you don’t...

Enhancing SQL Injection Support

Injection attacks are still the most common type of vulnerabilities found in software, SQL injection is one of them, it exploits the lack of...

2018

5 projects

Official year page

Add meta-shell commands for reverse shell session

Shell sessions typically expose a direct connection to a remote shell, but are lacking a number of nice features such as the ability to stop a remote...

Post-exploitation interface module to make it easy for anyone anywhere

In many cases once you have exploited a device you don’t know exactly what to do or how to go on. Maybe you have many payloads available and after...

Improving the Post-exploit / Meterpreter functionality

Creation of a Meterpreter session Graphical User Interaction (UI) including visual listing of commands available and post modules that can be used...

Integration plugin for 3rd party frameworks.

This project tries to provide user the ability to use the functionalities, provided by third party external frameworks such as Pupy or PowerShell...

Improving post exploitation features on POSIX systems

As an IT student, I would like to take part in the GSOC 2018 by working on the Metasploit Project, the following proposal details the complete summer...

2017

2 projects

Official year page

Add vulnerabilities to Metasploitable3, reduce Bugs, work on enhancements and customisation feature

Not everyone could setup Metasploitable 3 with ease (as mentioned in Github issues: https://github.com/rapid7/metasploitable3/issues). This is...

Improving stager payloads especially on non-Windows platforms

Hi, I’m a computer science university student from Japan. I’m interested in binary exploitation and reverse engineering. I like software...