Meterpreter


THE DEFENDER'S ENEMY


OJ Reeves - @TheColonial

Agenda


(goal: minimal slides)

  • Who am I?
  • Metasploit
  • Meterpreter
  • Uber Demo!

Who am I?


Nobody of consequence!

Polyglot geek / dev - 15 years

Somehow landed a job
with Rapid7 in Sept

Working on their tools since

Metasploit


Rapid7's Open Source
penetration testing framework

Brainchild of HD Moore

200,000 users & contributors

Exploits, encoders, payloads,
post modules, aux modules

Also - Metasploit Pro!

Meterpreter


Metasploit's go-to payload
(at least for Windows)

Windows, POSIX, PHP,
Python, Java, Android

Created by Matt `skape` Miller

Lots of amazing contributors
HD, Egypt, Mubix, Meatballs,
CorelanCoder, ScriptJunkie and more

Windows Meterpreter


Doesn't touch the disk!

Recently updated, fixed,
stabilised, improved, etc

A bunch of new features


As a defender, you should
KEEP IT OFF YOUR BOXES

And here's why ...




Uber Demo


Please ask questions as we go

Meterpreter

By OJ

Meterpreter

  • 734