After providing a detailed exploit for Poison Ivy’s C&C server, the natural course of things was to incorporate it into the Metasploit framework. So here is a fully functional Metasploit module that exploits a remote Poison Ivy C&C server, bypassing DEP and ASLR, for all Windows versions.

This is how you run the module:

Easy as PI. :)

This is the current version of the Metasploit module for the Poison Ivy exploit. Check back from time to time as it may get updated.


3 thoughts on “Poison Ivy Exploit Metasploit Module

  1. Great module! Would you like to include this in the official Metasploit repository? The target configuration needs a few tweaks, but it looks pretty much perfect otherwise.

