We performed a comparison between Pentera and Rapid7 Metasploit based on real PeerSpot user reviews.
Find out in this report how the two Vulnerability Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The most valuable feature of Pentera is that you can do continuous vulnerability assessment, which is automated."
"What I like the most about Pentera is its solution-oriented approach."
"The product is easy to use."
"Maybe there are some remediation steps on the website, we can mask sensitive information on the website better."
"The vulnerability scanner, exploit achievements, and remediation actions are all great."
"It contains almost all the available exploits and payloads."
"Technical support has been helpful and responsive."
"It is scalable. It's in line with our needs."
"The solution is open source and has many small targetted penetration tests that have been written by many people that are useful. You can choose different subjects for the test, such as Oracle databases or Apache servers."
"The greatest advantage of Rapid7 Metasploit is that it is the only system that can directly exploit vulnerabilities on the Metasploit platform."
"It allows us to concentrate solely on identified vulnerabilities without the hassle of additional setup."
"The most valuable feature for us is the support for testing Linux-based web server components."
"The tool's most useful feature for penetration testing is its automation capabilities. With the professional edition, you can upload the results from Nessus in the Rapid7 Metasploit solution portal."
"Maybe scalability. I know that the Pentera right now is high level in order to scan big deals over 500 IPs and not less, and not less. That can be more granular. This will be useful."
"Pentera's general dashboards could be improved and made more specific in terms of vulnerabilities that I'm discovering."
"The price could be improved."
"The vulnerability scanner, exploit achievements, and remediation actions are all great."
"There is room for improvement in virtualization compatibility."
"I think areas with shortcomings that need improvement are more integration and automation."
"The solution is not user-friendly and has room for improvement."
"The solution should improve the responsiveness of its live technical support."
"If your company's patch is not up to date, but you have other detection or defense solutions such as endpoint detection and response and antivirus software, the product exploit may not work effectively. This is because its exploit database update process is slow and not real-time. For zero-day vulnerabilities or new security threats, relying on Rapid7 Metasploit alone may not be effective."
"Advanced Infrastructure should be implemented in the next release for better orchestration."
"There are numerous outdated exploits in their database that should be updated."
"I would like to see more capabilities, more functions, and more features. More types of attack vectors."
"The open-source version has reporting limitations. You need to develop these capabilities yourself. Built-in reporting is an excellent feature for penetration testing, but it isn't a must-have. The solution could also cover more vulnerabilities. Metasploit has around 10,000 exploits in its library, but more is always better."
Pentera is ranked 14th in Vulnerability Management with 5 reviews while Rapid7 Metasploit is ranked 12th in Vulnerability Management with 18 reviews. Pentera is rated 8.2, while Rapid7 Metasploit is rated 7.6. The top reviewer of Pentera writes "A stable solution that can be used to do continuous and automated vulnerability assessments". On the other hand, the top reviewer of Rapid7 Metasploit writes "Helps find vulnerabilities in a system to determine whether the system needs to be upgraded". Pentera is most compared with Cymulate, Tenable Nessus, Picus Security, Horizon3.ai and SafeBreach, whereas Rapid7 Metasploit is most compared with Tenable Nessus, Rapid7 InsightVM, Acunetix, Nucleus and Qualys VMDR. See our Pentera vs. Rapid7 Metasploit report.
See our list of best Vulnerability Management vendors.
We monitor all Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.