Get started with our free security tools today, see where you are at risk.

Security doesn't come easy, and it shouldn't be your wallet that decides over whether you can protect your data. That's why Rapid7 makes community editions of its security software available to download for free. In addition, we have some great free security tools you can use on your smart phone or in your browser.


Nexpose for Vulnerability Management
Get your free vulnerability scanner for small organizations or individual use.

free download
Metasploit for Penetration Testing
Get your free download of the world's leading penetration testing tool.

free download
AppSpider for Web Application Security
Get your free trial of the dynamic application security testing tool.

free trial


UserInsight for Intruder Detection
Schedule your guided demo of UserInsight to detect and investigate.

free demo


OpenSSL Heartbleed Vulnerability Scanner
Download this free scanner dedicated to CVE-2014-0160. Quickly scan your entire web environment to see where you are affected by this serious vulnerability.

free download
Try our free RiskRater tool today and see where your organization's mobile, endpoint, and user based security stacks up to industry benchmarks.

get started
ScanNow for MySQL
Test your MySQL servers for the password vulnerability CVE-2012-2122 to learn whether they are at risk. Scan ranges of IPs and ports that you define.

free download
Metasploitable Vulnerable Machine
Test Metasploit with this virtual machine based on Linux that contains several intentional vulnerabilities for you to exploit.

free download
SQL Injection Cheat Sheet

Includes the attack strings and commands as well as default usernames and passwords for the five most common databases.

free download
Injection Cheat Sheet

This simple one pager details all the syntax and commands necessary to hack an application with any of the injection attacks.

free download
ScanNow for Universal Plug and Play (UPnP)
The free scanner checks whether your network-enabled devices might be vulnerable to attack through the UPnP protocol.

free download
SQL Invader
Exploit or demonstrate SQL injection vulnerabilities within your web applications.

free download