The Rapid7 Blog:
Your Signal in the Security Noise
Insights, stories, and guidance from our global security and research teams.
Featured posts
3684 Results

Threat Research
New Research: We’re Still Terrible at Passwords; Making it Easy for Attackers
Tod Beardsley

Detection and Response
Hands-On IoT Hacking: Rapid7 at DEF CON 30 IoT Village, Part 1
Deral Heiland

Threat Research
FLEXlm and Citrix ADM Denial of Service Vulnerability
Ron Bowes

Products and Tools
Emerging best practices for securing cloud-native environments
Rapid7

Exposure Management
CVE-2022-42889: Keep Calm and Stop Saying "Text4Shell"
Erick Galinkin

Detection and Response
Addressing the Evolving Attack Surface Part 1: Modern Challenges
Bria Grangard

Exposure Management
Metasploit Wrap-Up: 10/14/22
Christophe De La Fuente

Security Operations
Cloud IAM Done Right: How LPA Helps Significantly Reduce Cloud Risk
Ryan Blanchard

Exposure Management
A SIEM With a Pen Tester's Eye: How Offensive Security Helps Shape InsightIDR
Rapid7

Security Operations
The Intelligent Listing: Cybersecurity Job Descriptions That Deliver
Jake Godgart

Detection and Response
Rapid7 Recognized in the 2022 Gartner® Magic Quadrant™ for SIEM
Meaghan Buchanan

Products and Tools
Real-Time Risk Mitigation in Google Cloud Platform
Ben Austin

Detection and Response
Patch Tuesday - October 2022
Greg Wiseman

Exposure Management
Metasploit Weekly Wrap-Up: Oct. 7, 2022
Grant Willcox

Vulnerabilities and Exploits
CVE-2022-40684: Remote Authentication Bypass Vulnerability in Fortinet Firewalls, Web Proxies
Glenn Thorpe

Exposure Management
Exploitation of Unpatched Zero-Day Remote Code Execution Vulnerability in Zimbra Collaboration Suite (CVE-2022-41352)
Ron Bowes

Products and Tools
What's New in InsightIDR: Q3 2022 in Review
KJ McCann

Detection and Response
Velociraptor Version 0.6.6: Multi-Tenant Mode and More Let You Dig Deeper at Scale Like Never Before
Carlos Canto

Exposure Management
Metasploit Weekly Wrap-Up: Sep. 30, 2022
Dean Welch

Exposure Management
CVE-2022-41040 and CVE-2022-41082: Unpatched Zero-Day Vulnerabilities in Microsoft Exchange Server
Caitlin Condon
![[The Lost Bots] S02E04: Cyber's Most Dangerous Game — Threat Hunting](/_next/image/?url=https%3A%2F%2Fimages.contentstack.io%2Fv3%2Fassets%2Fblte4f029e766e6b253%2Fblt82cd5c06bb93678c%2F683ddbdc3e68ee73768897fa%2F-The-Lost-Bots--Episode-1--External-Threat-Intelligence.png%3Fauto%3Davif&w=1920&q=75)
Industry Trends
[The Lost Bots] S02E04: Cyber's Most Dangerous Game — Threat Hunting
Rapid7