The Rapid7 Blog:
Your Signal in the Security Noise
Insights, stories, and guidance from our global security and research teams.
Featured posts

Products and Tools
Metasploit Wrap-Up 04/10/2026
Simon Janusz

Artificial Intelligence
What Project Glasswing Means for Security Leaders
Douglas McKee, Director, Vulnerability Intelligence
Products and Tools
What’s New in Rapid7 Products and Services: Q1 2026 in Review
Ed Montgomery

Vulnerabilities and Exploits
FortiGate CVE-2025-59718 Exploitation: Incident Response Findings
Eric Carey, Olivia Henderson +1

Industry Trends
A First Look at Our Speaker Lineup and Agenda for the Rapid7 2026 Global Cybersecurity Summit
Emma Burdett

Products and Tools
Metasploit Wrap-Up 04/03/2026
Simon Janusz

Exposure Management
You Don’t Have a Security Problem, You Have a Visibility Problem
James Davis

Threat Research
New Whitepaper: Stealthy BPFDoor Variants are a Needle That Looks Like Hay
Rapid7 Labs

Industry Trends
What CISOs Should Expect from AI Powered MDR in 2026, According to Rapid7 CEO Corey Thomas
Craig Adams

Threat Research
Initial Access Brokers have Shifted to High-Value Targets and Premium Pricing
Rapid7 Labs

Industry Trends
Red Teaming in 2026: What to Expect at our 2026 Global Cybersecurity Summit
Emma Burdett

Products and Tools
Metasploit Wrap-Up 03/27/2026
Spencer McIntyre

Exposure Management
Why CVSS is No Longer Enough for Exposure Management
Joel Alcon

Threat Research
BPFdoor in Telecom Networks: Sleeper Cells in the Backbone
Rapid7 Labs

Products and Tools
From Vectors to Verdicts: Web App Testing with Vector Command
Ed Montgomery

Threat Research
New Whitepaper: Exploiting Cellular-based IoT Devices
Deral Heiland
Cloud and Devops Security
Rapid7 Completes BSI C5 Type 2 Examination: Stronger Cloud Security for DACH Organizations
Georgeta Toth

Vulnerabilities and Exploits
CVE-2026-3055: Citrix NetScaler ADC and NetScaler Gateway Out-of-Bounds Read
Rapid7

Products and Tools
Metasploit Wrap-Up 03/20/2026
Brendan Watters

Products and Tools
Negotiating with the Board: Translating Active Risk into Financial Exposure
Trevor Christiansen

Vulnerabilities and Exploits
CVE-2026-31381, CVE-2026-31382: Gainsight Assist Information Disclosure and Cross-Site Scripting (FIXED)
Christopher O’Boyle