The Rapid7 Blog:
Your Signal in the Security Noise

Insights, stories, and guidance from our global security and research teams.

Weekly security updates — no spam. Privacy Policy.

Velociraptor 0.7.2 Release: Digging Deeper than Ever with EWF Support, Dynamic DNS and More

Detection and Response

Velociraptor 0.7.2 Release: Digging Deeper than Ever with EWF Support, Dynamic DNS and More

Rapid7's avatar

Rapid7

Metasploit Weekly Wrap-Up 04/26/24

Exposure Management

Metasploit Weekly Wrap-Up 04/26/24

Spencer McIntyre's avatar

Spencer McIntyre

USF College of Engineering Presents Rapid7 With 2024 Corporate Impact Award

Rapid7 Blog

USF College of Engineering Presents Rapid7 With 2024 Corporate Impact Award

Martin McKeay's avatar

Martin McKeay

Unauthenticated CrushFTP Zero-Day Enables Complete Server Compromise

Exposure Management

Unauthenticated CrushFTP Zero-Day Enables Complete Server Compromise

Caitlin Condon's avatar

Caitlin Condon

Take Command Summit: Take Breaches from Inevitable to Preventable on May 21

Products and Tools

Take Command Summit: Take Breaches from Inevitable to Preventable on May 21

Rapid7's avatar

Rapid7

Metasploit Weekly Wrap-Up 04/19/24

Exposure Management

Metasploit Weekly Wrap-Up 04/19/24

Jack Heysel's avatar

Jack Heysel

Enforce and Report on PCI DSS v4 Compliance with Rapid7

Exposure Management

Enforce and Report on PCI DSS v4 Compliance with Rapid7

Lara Sunday's avatar

Lara Sunday

Rapid7 Insight Platform Achieves Level 2 TX-Ramp Authorization

Rapid7 Blog

Rapid7 Insight Platform Achieves Level 2 TX-Ramp Authorization

Rapid7's avatar

Rapid7

Metasploit Weekly Wrap-Up 04/12/24

Exposure Management

Metasploit Weekly Wrap-Up 04/12/24

Simon Janusz's avatar

Simon Janusz

CVE-2024-3400: Critical Command Injection Vulnerability in Palo Alto Networks Firewalls

Exposure Management

CVE-2024-3400: Critical Command Injection Vulnerability in Palo Alto Networks Firewalls

Caitlin Condon's avatar

Caitlin Condon

Stories from the SOC Part 2: MSIX Installer Utilizes Telegram Bot to Execute IDAT Loader

Detection and Response

Stories from the SOC Part 2: MSIX Installer Utilizes Telegram Bot to Execute IDAT Loader

Tom Elkins's avatar

Tom Elkins

Patch Tuesday - April 2024

Exposure Management

Patch Tuesday - April 2024

Adam Barnett's avatar

Adam Barnett

Metasploit Weekly Wrap-Up 04/05/2024

Exposure Management

Metasploit Weekly Wrap-Up 04/05/2024

Alan David Foster's avatar

Alan David Foster

What’s New in Rapid7 Products & Services: Q1 2024 in Review

Products and Tools

What’s New in Rapid7 Products & Services: Q1 2024 in Review

Margaret Wei's avatar

Margaret Wei

CVE-2024-0394: Rapid7 Minerva Armor Privilege Escalation (FIXED)

Vulnerabilities and Exploits

CVE-2024-0394: Rapid7 Minerva Armor Privilege Escalation (FIXED)

Dani Kamanovsky's avatar

Dani Kamanovsky

Challenges Drive Career Growth: Meet Rudina Tafhasaj

Rapid7 Blog

Challenges Drive Career Growth: Meet Rudina Tafhasaj

Rapid7's avatar

Rapid7

Backdoored XZ Utils (CVE-2024-3094)

Vulnerabilities and Exploits

Backdoored XZ Utils (CVE-2024-3094)

Rapid7's avatar

Rapid7

Metasploit Weekly Wrap-Up 03/29/2024

Exposure Management

Metasploit Weekly Wrap-Up 03/29/2024

Brendan Watters's avatar

Brendan Watters

Stories from the SOC Part 1: IDAT Loader to BruteRatel

Products and Tools

Stories from the SOC Part 1: IDAT Loader to BruteRatel

Tom Elkins's avatar

Tom Elkins

Metasploit Framework 6.4 Released

Products and Tools

Metasploit Framework 6.4 Released

Spencer McIntyre's avatar

Spencer McIntyre

Metasploit Weekly Wrap-Up 03/22/2024

Exposure Management

Metasploit Weekly Wrap-Up 03/22/2024

Egor Kalinichev's avatar

Egor Kalinichev