We performed a comparison between Rapid7 Metasploit and Acunetix based on our users’ reviews in four categories. After reading all of the collected data, you can find our conclusion below.
Comparison Result: Based on the parameters we compared, Acunetix comes out ahead of Rapid7 Metasploit. Although both products have valuable features and can be estimated as high-end solutions, our reviewers found that Rapid7 Metasploit requires technical understanding for deployment and the free version lacks technical support.
"It can operate both as a standalone and it can be integrated with other applications, which makes it a very versatile solution to have."
"Acunetix has an awesome crawler. It gives a referral site map of near targets and also goes really deep to find all the inputs without issues. This was valuable because it helped me find some files or directories, like web admin panels without authentication, which were hidden."
"The usability and overall scan results are good."
"There is a lot of documentation on their website which makes setting it up and using it quite simple."
"The scalability is good. The scalability is more than good because it can operate both as a standalone and it can be integrated as part of applications. So that really makes it a very, very versatile solution to have."
"The tool's most valuable feature is scan configurations. We use it for external physical applications. The scanning time depends on the application's code."
"The most valuable feature of Acunetix is the UI and the scan results are simple."
"The most valuable feature of the solution is the speed at which it can scan multiple domains in just a few hours."
"Rapid7 Metasploit is a useful product."
"I don't have any other tools like it, and I always use it when I'm doing a pen test. Metasploit is a great solution for penetration testing,"
"All of the features are great."
"Technical support has been helpful and responsive."
"The most valuable features of the solution are the scripts, the modules, and the tools that the Rapid7 Metasploit framework has."
"The greatest advantage of Rapid7 Metasploit is that it is the only system that can directly exploit vulnerabilities on the Metasploit platform."
"The option to generate phishing emails has proven to be very valuable in understanding the behavior of users."
"It's not possible to do penetration testing without being very proficient in Metasploit."
"While we do have it integrated with other solutions, it could still offer more integrations."
"The solution's pricing could be better."
"You can't actually change your password after you've set it unless you go back into the administration account and you change it there. Thus, if you're locked out and don't remember your password, that's a thing."
"In terms of what needs improvement, the way the licensing model is currently is not very convenient for us because initially, when we bought it, the licensing model was very flexible, but now it restricts us."
"The only problem that they have is the price. It is a bit expensive, and you cannot change the number of applications for the whole year."
"Currently only supports web scanning."
"There is room for improvement in website authentication because I've seen other products that can do it much better."
"There are some versions of the solution that are not as stable as others."
"Better automation capabilities would be an improvement."
"Rapid7 Metasploit could be made easier for new users to learn."
"There are numerous outdated exploits in their database that should be updated."
"The initial setup was a bit "tweaky" for the open-source version."
"Metasploit cannot be installed on a machine with an antivirus."
"We'd like them to offer better coverage of malware."
"The open-source version has reporting limitations. You need to develop these capabilities yourself. Built-in reporting is an excellent feature for penetration testing, but it isn't a must-have. The solution could also cover more vulnerabilities. Metasploit has around 10,000 exploits in its library, but more is always better."
"The solution is not user-friendly and has room for improvement."
Acunetix is ranked 15th in Vulnerability Management with 26 reviews while Rapid7 Metasploit is ranked 12th in Vulnerability Management with 18 reviews. Acunetix is rated 7.6, while Rapid7 Metasploit is rated 7.6. The top reviewer of Acunetix writes "Fantastic reporting features hindered by slow scanning ". On the other hand, the top reviewer of Rapid7 Metasploit writes "Helps find vulnerabilities in a system to determine whether the system needs to be upgraded". Acunetix is most compared with OWASP Zap, Tenable.io Web Application Scanning, PortSwigger Burp Suite Professional, HCL AppScan and Rapid7 AppSpider, whereas Rapid7 Metasploit is most compared with Tenable Nessus, Pentera, Rapid7 InsightVM, Nucleus and Qualys VMDR. See our Acunetix vs. Rapid7 Metasploit report.
See our list of best Vulnerability Management vendors.
We monitor all Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.