The Rapid7 Blog:
Your Signal in the Security Noise

Insights, stories, and guidance from our global security and research teams.

Weekly security updates — no spam. Privacy Policy.

Uncover and Remediate Toxic Combinations with Attack Path Analysis

Products and Tools

Uncover and Remediate Toxic Combinations with Attack Path Analysis

James Alaniz's avatar

James Alaniz

Metasploit Weekly Wrap-Up: 6/23/23

Exposure Management

Metasploit Weekly Wrap-Up: 6/23/23

Jeffrey Martin's avatar

Jeffrey Martin

Multiple Vulnerabilities in Fortra Globalscape EFT Administration Server [FIXED]

Exposure Management

Multiple Vulnerabilities in Fortra Globalscape EFT Administration Server [FIXED]

Ron Bowes's avatar

Ron Bowes

Cyber Asset Attack Surface Management 101

Detection and Response

Cyber Asset Attack Surface Management 101

Rapid7's avatar

Rapid7

Metasploit Weekly Wrap-Up: Jun. 16, 2023

Exposure Management

Metasploit Weekly Wrap-Up: Jun. 16, 2023

Alan David Foster's avatar

Alan David Foster

CVE-2023-34362: MOVEit Vulnerability Timeline of Events

Exposure Management

CVE-2023-34362: MOVEit Vulnerability Timeline of Events

Rapid7's avatar

Rapid7

Patch Tuesday - June 2023

Detection and Response

Patch Tuesday - June 2023

Adam Barnett's avatar

Adam Barnett

CVE-2023-27997: Critical Fortinet Fortigate Remote Code Execution Vulnerability

Exposure Management

CVE-2023-27997: Critical Fortinet Fortigate Remote Code Execution Vulnerability

Drew Burton's avatar

Drew Burton

Metasploit Weekly Wrap-Up: Jun. 9, 2023

Exposure Management

Metasploit Weekly Wrap-Up: Jun. 9, 2023

Brendan Watters's avatar

Brendan Watters

OWASP TOP 10 API Security Risks: 2023

Cloud and Devops Security

OWASP TOP 10 API Security Risks: 2023

Ray Cochrane's avatar

Ray Cochrane

Detect and Prioritize Identity-Related Cloud Risk with InsightCloudSec

Products and Tools

Detect and Prioritize Identity-Related Cloud Risk with InsightCloudSec

Cathal O'Neill's avatar

Cathal O'Neill

CVE-2023-2868: Total Compromise of Physical Barracuda ESG Appliances

Exposure Management

CVE-2023-2868: Total Compromise of Physical Barracuda ESG Appliances

Caitlin Condon's avatar

Caitlin Condon

Velociraptor 0.6.9 Release: Digging Even Deeper with SMB Support, Azure Storage and Lockdown Server Mode

Products and Tools

Velociraptor 0.6.9 Release: Digging Even Deeper with SMB Support, Azure Storage and Lockdown Server Mode

Mike Cohen's avatar

Mike Cohen

Metasploit Weekly Wrap-Up: Jun. 7, 2023

Exposure Management

Metasploit Weekly Wrap-Up: Jun. 7, 2023

Grant Willcox's avatar

Grant Willcox

This is Ceti Alpha Five!

Detection and Response

This is Ceti Alpha Five!

Owen Holland's avatar

Owen Holland

Metasploit Weekly Wrap-Up: 6/2/23

Exposure Management

Metasploit Weekly Wrap-Up: 6/2/23

Christopher Granleese's avatar

Christopher Granleese

Rapid7 Observed Exploitation of Critical MOVEit Transfer Vulnerability

Detection and Response

Rapid7 Observed Exploitation of Critical MOVEit Transfer Vulnerability

Caitlin Condon's avatar

Caitlin Condon

Rapid7 Sales Director Devin Poulter On Building a Career as an Account Executive

Rapid7 Blog

Rapid7 Sales Director Devin Poulter On Building a Career as an Account Executive

Rapid7's avatar

Rapid7

Rapid7 Data Engineers Inspire Future Tech Talent at Summer Search Career Fest

Rapid7 Blog

Rapid7 Data Engineers Inspire Future Tech Talent at Summer Search Career Fest

Rapid7's avatar

Rapid7

Widespread Exploitation of Zyxel Network Devices

Vulnerabilities and Exploits

Widespread Exploitation of Zyxel Network Devices

Drew Burton's avatar

Drew Burton

Fetch Payloads: A Shorter Path from Command Injection to Metasploit Session

Exposure Management

Fetch Payloads: A Shorter Path from Command Injection to Metasploit Session

Brendan Watters's avatar

Brendan Watters