The Rapid7 Blog:
Your Signal in the Security Noise
Insights, stories, and guidance from our global security and research teams.
Featured posts
3885 Results

Products and Tools
Weekly Metasploit Update: Exploits for FlowiseAI CSV Agent and MacOS Package Kit
Jack Heysel

Detection and Response
Security Teams Are Ready To Become More Preemptive. What’s Holding Them Back?
Emma Burdett

Security Operations
A Day With Your Vector Command Red Team Pod
Trevor Christiansen

Products and Tools
Weekly Metasploit Update: Modules for SMB-to-Meterpreter, Peyara Remote Mouse RCE exploit, and more
Jack Heysel

Security Operations
Formalizing Red Teaming Offensive Methodology as a Multi-Agent AI Architecture
Jacob Steadman

Artificial Intelligence
5 Myths About AI in the SOC Security Teams Need to Rethink
Emma Burdett

Artificial Intelligence
Modernizing Global Vulnerability Standards For The Age Of AI
Sabeen Malik

Products and Tools
Weekly Metasploit Update: Modules for Audiobookshelf, LiteLLM, Next.js, Dalfox and more
Simon Janusz

Industry Trends
Experts on Experts: Why AI and Compliance Are Forcing A New Security Operating Model
Corey Thomas

Detection and Response
Why SIEM is Moving Toward Unified Security Operations: Rapid7 Named a Major Player in IDC MarketScape
Rapid7

Products and Tools
Weekly Metasploit Update: NTLM Relay Priv Esc, MCP Server Integration, Paperclip AI RCE Chain, and more
Alan David Foster
Industry Trends
Why Security Teams Need To Start Earlier
Tom Caiazza

Threat Research
Malware à la Mode: Tracking Dropping Elephant Tradecraft Through a China-Themed Loader Chain
Anna Širokova

Security Operations
NIS2 is raising the bar. Here’s how to turn readiness into resilience.
Sabeen Malik

Security Operations
Does Your Security Programme Align With NIS2 Requirements?
Sabeen Malik

Artificial Intelligence
Beyond the Score: Using AI to Translate CVEs into Real-World Business Risk
Rapid7

Products and Tools
Weekly Metasploit Update: New Kerberos/Certificate tracing options, and multiple new modules
Spencer McIntyre

Vulnerabilities and Exploits
Active Exploitation of Oracle PeopleSoft Zero-Day (CVE-2026-35273)
Jonah Burgess

Threat Research
Criminal AI-as-a-Service in 2026: How the Underground Market Is Operationalizing Cybercrime
Jeremy Makowski

Artificial Intelligence
Automated Threat Hunting: Turning Threat Intelligence into Executable Hunt Plans
Blake McDermott

Vulnerabilities and Exploits
CVE-2026-10520, CVE-2026-10523 - Multiple critical vulnerabilities affecting Ivanti Sentry
Rapid7


