Exploit Framework User Agent — Detection Rule

Detects suspicious user agent strings used by exploit / pentest frameworks like Metasploit in proxy logs

Read the full analysis on IntelFusions