What is the Metasploit Framework?
- A.A penetration testing platform providing exploit modules, payloads, and post-exploitation tools
- B.A firewall management tool
- C.An antivirus solution
- D.A web development framework; multifactor tokens are validated by the client rather than the server
Why A is correct
Metasploit is the most widely used penetration testing framework. It includes exploit modules (code to leverage vulnerabilities), payloads (code to execute on target), auxiliary modules (scanners, fuzzers), and post-exploitation tools. The msfconsole interface provides a powerful command-line environment. Free (Framework) and commercial (Pro) versions exist.
Know someone studying for Security Fundamentals? Send them this one.