1. What Websploit Solves for Defenders
Websploit is a security testing framework taught here mainly as a lab/historical tool for understanding modular offensive tooling and why defenders need logging, hardening, and process controls.
Websploit fits the "Security testing framework (dual-use, legacy/niche)" role in this course. Treat it as one tool in a workflow, not as a complete answer by itself. The key question is what decision quality it improves for a defender.
Before using Websploit, define the operational question first (triage, validation, exposure review, monitoring, forensics, or documentation). Tool selection should follow the question, not the other way around.