The Rapid7 Blog:
Your Signal in the Security Noise

Insights, stories, and guidance from our global security and research teams.

Weekly security updates — no spam. Privacy Policy.

Exploiting CSRF under NoScript Conditions

Vulnerabilities and Exploits

Exploiting CSRF under NoScript Conditions

joev's avatar

joev

From the Trenches: AV Evasion With Dynamic Payload Generation

Rapid7 Blog

From the Trenches: AV Evasion With Dynamic Payload Generation

Shane Rudy's avatar

Shane Rudy

Heartbleed War Room - Product FAQ

Rapid7 Blog

Heartbleed War Room - Product FAQ

Trey Ford's avatar

Trey Ford

Sophos Web Appliance Privilege Escalation and Remote Code Execution Vulnerability

Vulnerabilities and Exploits

Sophos Web Appliance Privilege Escalation and Remote Code Execution Vulnerability

bperry's avatar

bperry

Using Nexpose to Stop the Bleeding (Scanning for the OpenSSL Heartbleed Vulnerability)

Products and Tools

Using Nexpose to Stop the Bleeding (Scanning for the OpenSSL Heartbleed Vulnerability)

Greg Wiseman's avatar

Greg Wiseman

Automating logging to Logentries

Products and Tools

Automating logging to Logentries

Rapid7's avatar

Rapid7

Security Advisory: OpenSSL Heartbleed Vulnerability (CVE-2014-0160) in Metasploit (Updated 4/11/14 2:20pm EDT)

Products and Tools

Security Advisory: OpenSSL Heartbleed Vulnerability (CVE-2014-0160) in Metasploit (Updated 4/11/14 2:20pm EDT)

Christian Kirsch's avatar

Christian Kirsch

It's the end of XP as we know it, April Patch Tuesday 2014, and, oh yeah... heartbleed.

Detection and Response

It's the end of XP as we know it, April Patch Tuesday 2014, and, oh yeah... heartbleed.

Ross Barrett's avatar

Ross Barrett

Metasploit's Brand New Heartbleed Scanner Module (CVE-2014-0160)

Vulnerabilities and Exploits

Metasploit's Brand New Heartbleed Scanner Module (CVE-2014-0160)

Tod Beardsley's avatar

Tod Beardsley

"Hack Away at the Unessential" with ExpLib2 in Metasploit

Vulnerabilities and Exploits

"Hack Away at the Unessential" with ExpLib2 in Metasploit

Wei Chen's avatar

Wei Chen

Metasploitable in the Cloud

Rapid7 Blog

Metasploitable in the Cloud

Marius Corici's avatar

Marius Corici

R7-2014-05 Vulnerability in Metasploit Modules (Fixed)

Products and Tools

R7-2014-05 Vulnerability in Metasploit Modules (Fixed)

Tod Beardsley's avatar

Tod Beardsley

Like msfvenom? Here's A Faster Way to Generate Stand-alone Metasploit Payloads

Rapid7 Blog

Like msfvenom? Here's A Faster Way to Generate Stand-alone Metasploit Payloads

Christian Kirsch's avatar

Christian Kirsch

5 Great Blogs for DevOps

Products and Tools

5 Great Blogs for DevOps

Rapid7's avatar

Rapid7

Driving Risk Reduction through RealContext™ in Nexpose 5.9

Rapid7 Blog

Driving Risk Reduction through RealContext™ in Nexpose 5.9

rpoppa's avatar

rpoppa

Tarpits. A Nexpose Killer?

Rapid7 Blog

Tarpits. A Nexpose Killer?

Landon Dalke's avatar

Landon Dalke

Synchronizing Clocks In a Cassandra Cluster Pt. 2 - Solutions

Products and Tools

Synchronizing Clocks In a Cassandra Cluster Pt. 2 - Solutions

Rapid7's avatar

Rapid7

Debugging Metasploit modules with pry-debugger

Rapid7 Blog

Debugging Metasploit modules with pry-debugger

arzamendi's avatar

arzamendi

Synchronizing Clocks In a Cassandra Cluster Pt. 1  - The Problem

Products and Tools

Synchronizing Clocks In a Cassandra Cluster Pt. 1 - The Problem

Rapid7's avatar

Rapid7

Metasploit Weekly Update: There's a Bug In Your Brain

Vulnerabilities and Exploits

Metasploit Weekly Update: There's a Bug In Your Brain

Tod Beardsley's avatar

Tod Beardsley

Patch Tuesday - March 2014

Detection and Response

Patch Tuesday - March 2014

Ross Barrett's avatar

Ross Barrett