Metasploit is both a module collection and a workflow environment for organizing reconnaissance, validating vulnerabilities, and delivering payloads. This course introduces that workflow through msfconsole, its PostgreSQL-backed data model, auxiliary scanners, exploit-module configuration, and shell connection concepts.
You will keep scan data in workspaces, inspect module requirements before acting, and validate an intentionally vulnerable Shellshock service before exploitation. Separate Netcat exercises make bind and reverse connection direction concrete, while the final challenge uses Metasploit to run a proof command against a local target.
What You Will Learn
- Initialize Metasploit’s PostgreSQL database, verify connectivity, and manage workspaces.
- Run
db_nmapand review stored host and service records insidemsfconsole. - Search for an auxiliary TCP scanner, configure
RHOSTSand port scope, and save its findings. - Find the Shellshock exploit module, inspect its documentation, and set
RHOSTS,RPORT, andTARGETURI. - Use a module’s
checkaction to validate a prepared target before exploitation. - Build local bind and reverse shell connections with Netcat and apply
LHOSTandLPORTconcepts. - Select a
linux/x86/execpayload and execute a proof command in the independent challenge.
Who This Course Is For
This intermediate course is for security learners who know basic scanning and service identification and want a structured introduction to Metasploit. It suits aspiring penetration testers and defenders who need to understand module selection, target options, stored reconnaissance data, payload direction, and pre-exploitation checks.
Prerequisites: Comfort with a Linux terminal, IP addresses and TCP ports, basic Nmap concepts, HTTP services, shell commands, and the distinction between reconnaissance, vulnerability validation, and exploitation.
Learning environment: An Ubuntu 22.04 terminal with Metasploit, PostgreSQL, Nmap, Netcat, and deliberately vulnerable local services. Scans, shell simulations, and exploitation use loopback targets inside the lab; the shell exercises may require two terminal tabs.
Frequently Asked Questions
Does the course teach exploit development?
No. You learn to search for, inspect, configure, check, and run an existing Metasploit exploit module. The course does not write Ruby modules or develop a new exploit.
Are the bind and reverse shells created with Metasploit?
No. Those exercises use Netcat on 127.0.0.1 so you can directly observe which side listens and which side connects. The LHOST and LPORT ideas transfer to Metasploit payload configuration.
Does the final challenge open an interactive Metasploit session?
No. It uses the linux/x86/exec payload to write hacked into /tmp/pwned.txt. Metasploit may report that no session was created; the proof file is the intended evidence of command execution.
Will I scan or exploit an external machine?
No. Database scans, auxiliary scans, the Shellshock target, and Netcat connections all use local loopback services prepared for the course.





