AI + Metasploit = Terrifyingly Easy Hacking is here (demo)
In this ethical lab demo, David Bombal and Kyle Winters connect Claude (LLM) to Metasploit through an MCP (Model Context Protocol) server to automate real at...

David Bombal
142.9K views • Sep 3, 2025

About this video
In this ethical lab demo, David Bombal and Kyle Winters connect Claude (LLM) to Metasploit through an MCP (Model Context Protocol) server to automate real attacks. Watch AI perform recon, generate a risk report, and execute VSFTPD backdoor, EternalBlue (SMBv1), and UnrealIRCD—dropping benign files on Linux and Windows with simple prompts.
Educational use only on intentionally vulnerable VMs. Do not attack systems you don’t own or lack permission to test.
What you’ll see
• How MCP bridges an AI to real tools (Metasploit RPC)
• AI-driven scanning + auto security report (services, versions, risks)
• Prompted exploits: VSFTPD, EternalBlue, UnrealIRCD
• Why this lowers barriers for red teams—and what blue teams should do
// Sponsored SEGMENT //
Big thanks to Cisco for sponsoring this video.
// Kyle Winters SOCIAL //
LinkedIn: https://www.linkedin.com/in/kyle-m-winters/
Cisco Blogs:  https://blogs.cisco.com/author/kylewinters
// Websites REFERENCE //
MetasploitMCP by GH05TCREW: https://github.com/GH05TCREW/MetasploitMCP
Kareem Iskander's MCP blogs: https://blogs.cisco.com/author/kareemiskander?ccid=cybersecurity&dtid=video&oid=david-bombal-episode 
Cisco U.: https://u.cisco.com?ccid=cisco-u&dtid=video&oid=david-bombal-episode    
// Video REFERENCE //
MCP Demo using Pythong: https://youtu.be/4FEg4XU6yQ4
Brute Force SSH: https://youtu.be/uSohtNwQXuI
Hacking LLMs: https://youtu.be/tiwx7WPW8Jc
// David's SOCIAL //
Discord: https://discord.com/invite/usKSyzb
X: https://www.twitter.com/davidbombal
Instagram: https://www.instagram.com/davidbombal
LinkedIn: https://www.linkedin.com/in/davidbombal
Facebook: https://www.facebook.com/davidbombal.co
TikTok: http://tiktok.com/@davidbombal
YouTube: https://www.youtube.com/@davidbombal
Spotify: https://open.spotify.com/show/3f6k6gERfuriI96efWWLQQ
SoundCloud: https://soundcloud.com/davidbombal
Apple Podcast: https://podcasts.apple.com/us/podcast/david-bombal/id1466865532
// MY STUFF //
https://www.amazon.com/shop/davidbombal
// SPONSORS //
Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com
// Menu //
0:00 - Coming up
0:58 - Disclaimer
01:00 - Introducing Metasploit MCP Server (by GH05TCREW)
03:01 - Metasploit MCP Demo 1
05:12 - Metasploit MCP Demo 2
10:59 - Metasploit MCP Demo 3
16:18 - Metasploit MCP Demo 4
19:15 - Metasploit MCP Demo 5
21:45 - How AI is changing cybersecurity
23:07 - Metasploit MCP Demo 5 continued
26:51 - Metasploit MCP server summary
28:00 - Conclusion
Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
Disclaimer: This video is for educational purposes only.
#ai #hack #claude
Educational use only on intentionally vulnerable VMs. Do not attack systems you don’t own or lack permission to test.
What you’ll see
• How MCP bridges an AI to real tools (Metasploit RPC)
• AI-driven scanning + auto security report (services, versions, risks)
• Prompted exploits: VSFTPD, EternalBlue, UnrealIRCD
• Why this lowers barriers for red teams—and what blue teams should do
// Sponsored SEGMENT //
Big thanks to Cisco for sponsoring this video.
// Kyle Winters SOCIAL //
LinkedIn: https://www.linkedin.com/in/kyle-m-winters/
Cisco Blogs:  https://blogs.cisco.com/author/kylewinters
// Websites REFERENCE //
MetasploitMCP by GH05TCREW: https://github.com/GH05TCREW/MetasploitMCP
Kareem Iskander's MCP blogs: https://blogs.cisco.com/author/kareemiskander?ccid=cybersecurity&dtid=video&oid=david-bombal-episode 
Cisco U.: https://u.cisco.com?ccid=cisco-u&dtid=video&oid=david-bombal-episode    
// Video REFERENCE //
MCP Demo using Pythong: https://youtu.be/4FEg4XU6yQ4
Brute Force SSH: https://youtu.be/uSohtNwQXuI
Hacking LLMs: https://youtu.be/tiwx7WPW8Jc
// David's SOCIAL //
Discord: https://discord.com/invite/usKSyzb
X: https://www.twitter.com/davidbombal
Instagram: https://www.instagram.com/davidbombal
LinkedIn: https://www.linkedin.com/in/davidbombal
Facebook: https://www.facebook.com/davidbombal.co
TikTok: http://tiktok.com/@davidbombal
YouTube: https://www.youtube.com/@davidbombal
Spotify: https://open.spotify.com/show/3f6k6gERfuriI96efWWLQQ
SoundCloud: https://soundcloud.com/davidbombal
Apple Podcast: https://podcasts.apple.com/us/podcast/david-bombal/id1466865532
// MY STUFF //
https://www.amazon.com/shop/davidbombal
// SPONSORS //
Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com
// Menu //
0:00 - Coming up
0:58 - Disclaimer
01:00 - Introducing Metasploit MCP Server (by GH05TCREW)
03:01 - Metasploit MCP Demo 1
05:12 - Metasploit MCP Demo 2
10:59 - Metasploit MCP Demo 3
16:18 - Metasploit MCP Demo 4
19:15 - Metasploit MCP Demo 5
21:45 - How AI is changing cybersecurity
23:07 - Metasploit MCP Demo 5 continued
26:51 - Metasploit MCP server summary
28:00 - Conclusion
Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
Disclaimer: This video is for educational purposes only.
#ai #hack #claude
Tags and Topics
Browse our collection to discover more content in these categories.
Video Information
Views
142.9K
Likes
4.2K
Duration
29:47
Published
Sep 3, 2025
User Reviews
4.7
(28) Related Trending Topics
LIVE TRENDSRelated trending topics. Click any trend to explore more videos.
No specific trending topics match this video yet.
Explore All Trends