The Rapid7 Blog:
Your Signal in the Security Noise
Insights, stories, and guidance from our global security and research teams.
Featured posts
265 Results

Vulnerabilities and Exploits
Lorex 2K Indoor Wi-Fi Security Camera: Multiple Vulnerabilities (FIXED)
Stephen Fewer

Vulnerabilities and Exploits
New “CleverSoar” Installer Targets Chinese and Vietnamese Users
Natalie Zargarov

Vulnerabilities and Exploits
Malware Campaign Lures Users With Fake W2 Form
Tom Elkins

Vulnerabilities and Exploits
Metasploit Weekly Wrap-Up 7/19/2024
Christophe De La Fuente

Vulnerabilities and Exploits
CVE-2024-4978: Backdoored Justice AV Solutions Viewer Software Used in Apparent Supply Chain Attack
Rapid7

Vulnerabilities and Exploits
CVE-2024-0394: Rapid7 Minerva Armor Privilege Escalation (FIXED)
Dani Kamanovsky

Vulnerabilities and Exploits
Backdoored XZ Utils (CVE-2024-3094)
Rapid7

Vulnerabilities and Exploits
How To Hunt For UEFI Malware Using Velociraptor
Matthew Green

Vulnerabilities and Exploits
CVE-2023-47218: QNAP QTS and QuTS Hero Unauthenticated Command Injection (FIXED)
Stephen Fewer

Vulnerabilities and Exploits
CVE-2023-49103 - Critical Information Disclosure in ownCloud Graph API
Stephen Fewer

Vulnerabilities and Exploits
CVE-2023-5950 Rapid7 Velociraptor Reflected XSS
Dr. Mike Cohen

Vulnerabilities and Exploits
CVE-2023-47246: SysAid Zero-Day Vulnerability Exploited By Lace Tempest
Caitlin Condon

Vulnerabilities and Exploits
Rapid7-Observed Exploitation of Atlassian Confluence CVE-2023-22518
Rapid7

Vulnerabilities and Exploits
Suspected Exploitation of Apache ActiveMQ CVE-2023-46604
Rapid7

Vulnerabilities and Exploits
CVE-2023-4966: Exploitation of Citrix NetScaler Information Disclosure Vulnerability
Rapid7

Vulnerabilities and Exploits
CVE-2023-20198: Active Exploitation of Cisco IOS XE Zero-Day Vulnerability
Caitlin Condon
![Multiple Vulnerabilities in South River Technologies Titan MFT and Titan SFTP [FIXED]](/_next/image/?url=https%3A%2F%2Fimages.contentstack.io%2Fv3%2Fassets%2Fblte4f029e766e6b253%2Fblt1de2821d1eac3ffb%2F683ddc6570aa95f50bfe2f13%2Fvuln-disclosure-banner.jpeg%3Fauto%3Davif&w=1920&q=75)
Vulnerabilities and Exploits
Multiple Vulnerabilities in South River Technologies Titan MFT and Titan SFTP [FIXED]
Ron Bowes

Vulnerabilities and Exploits
CVE-2023-22515: Zero-Day Privilege Escalation in Confluence Server and Data Center
Caitlin Condon

Vulnerabilities and Exploits
CVE-2023-4528: Java Deserialization Vulnerability in JSCAPE MFT (Fixed)
Ron Bowes

Vulnerabilities and Exploits
Active Exploitation of Multiple Adobe ColdFusion Vulnerabilities
Caitlin Condon

Vulnerabilities and Exploits
Widespread Exploitation of Zyxel Network Devices
Drew Burton