We performed a comparison between Rapid7 Metasploit and Tenable Nessus based on real PeerSpot user reviews.
Find out in this report how the two Vulnerability Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."It contains almost all the available exploits and payloads."
"The most valuable feature for us is the support for testing Linux-based web server components."
"Stability-wise, I rate the solution a nine out of ten...Scalability-wise, I rate the solution a nine out of ten."
"Technical support has been helpful and responsive."
"The reporting on the solution is good."
"All of the features are great."
"I use Rapid7 Metasploit for payload generation and Post-Exploitation."
"The most valuable features of the solution are the scripts, the modules, and the tools that the Rapid7 Metasploit framework has."
"User friendly and good dashboards."
"It is a mature tool."
"Tenable Nessus is an absolutely stable and fantastic product."
"Nessus gives me a good preview of vulnerabilities and good suggestions for remediation. It's easy to find a description of a given vulnerability and solutions for it."
"Out of the box, the product works well for us, so it's not a tool that we need to customize very much."
"We looked at Tenable, Qualys and Rapid7. We found Tenable was the best of all three."
"I am impressed with the tool's vulnerability scanning."
"The trial version is very good for testing whether it will suit your needs."
"Rapid7 Metasploit could be made easier for new users to learn."
"The open-source version has reporting limitations. You need to develop these capabilities yourself. Built-in reporting is an excellent feature for penetration testing, but it isn't a must-have. The solution could also cover more vulnerabilities. Metasploit has around 10,000 exploits in its library, but more is always better."
"The solution is not user-friendly and has room for improvement."
"The initial setup was a bit "tweaky" for the open-source version."
"The solution is not very scalable, it does not provide any automation to be able to scale it."
"I think areas with shortcomings that need improvement are more integration and automation."
"It is necessary to add some training materials and a tutorial for beginners."
"At the time I was using it, the graphical user interface needed some improvements."
"The reporting feature needs to be improved."
"One area that has room for improvement is the reporting. I'm preparing reports for Windows and Linux machines, etc. Currently, I'm collecting three or four reports and turning them into one report. I don't know if it is possible to combine all of them in one report, but that would be helpful."
"We would like to have the option of using the solution for the cloud as well as on-premises with the same license at the same time. That would be very helpful."
"Online learning could be a bit better."
"The tool needs to upgrade asset tracking."
"We'd like to see the solution embrace more user-friendliness."
"Lacks some penetration testing-related services."
"There should be a possibility to install agents on scanned machines. Tenable IO provides the capability of using local agents to check local problems, but this feature is not there in Tenable Nessus Professional. It would be nice to have something similar in Tenable Nessus Professional. We should have the capability to use local agents installed on the machines to locally check a problem."
Rapid7 Metasploit is ranked 12th in Vulnerability Management with 18 reviews while Tenable Nessus is ranked 3rd in Vulnerability Management with 75 reviews. Rapid7 Metasploit is rated 7.6, while Tenable Nessus is rated 8.4. The top reviewer of Rapid7 Metasploit writes "Helps find vulnerabilities in a system to determine whether the system needs to be upgraded". On the other hand, the top reviewer of Tenable Nessus writes "Unlimited assets for one price and quick, agentless results". Rapid7 Metasploit is most compared with Pentera, Rapid7 InsightVM, Acunetix, Nucleus and Qualys VMDR, whereas Tenable Nessus is most compared with Qualys VMDR, Rapid7 InsightVM, Tenable Security Center, Tenable Vulnerability Management and Amazon Inspector. See our Rapid7 Metasploit vs. Tenable Nessus report.
See our list of best Vulnerability Management vendors.
We monitor all Vulnerability Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.