The Rapid7 Blog:
Your Signal in the Security Noise

Insights, stories, and guidance from our global security and research teams.

Weekly security updates — no spam. Privacy Policy.

Rapid7 Discovered Vulnerabilities in Cisco ASA, ASDM, and FirePOWER Services Software

Vulnerabilities and Exploits

Rapid7 Discovered Vulnerabilities in Cisco ASA, ASDM, and FirePOWER Services Software

Jake Baines's avatar

Jake Baines

OCSF: Working Together to Standardize Data

Products and Tools

OCSF: Working Together to Standardize Data

Rapid7's avatar

Rapid7

Navigating the Evolving Patchwork of Incident Reporting Requirements

Industry Trends

Navigating the Evolving Patchwork of Incident Reporting Requirements

Peter Woolverton's avatar

Peter Woolverton

Patch Tuesday - August 2022

Detection and Response

Patch Tuesday - August 2022

Greg Wiseman's avatar

Greg Wiseman

6 Reasons Managed Detection and Response Is Hitting Its Stride

Products and Tools

6 Reasons Managed Detection and Response Is Hitting Its Stride

Mikayla Wyman's avatar

Mikayla Wyman

How One Engineer Upskilled Into a Salesforce Engineering Role at Rapid7

Rapid7 Blog

How One Engineer Upskilled Into a Salesforce Engineering Role at Rapid7

Rapid7's avatar

Rapid7

No Damsels in Distress: How Media and Entertainment Companies Can Secure Data and Content

Security Operations

No Damsels in Distress: How Media and Entertainment Companies Can Secure Data and Content

Ryan Blanchard's avatar

Ryan Blanchard

Metasploit Weekly Wrap-Up: 8/5/22

Exposure Management

Metasploit Weekly Wrap-Up: 8/5/22

Shelby Pace's avatar

Shelby Pace

CVE-2022-31660 and CVE-2022-31661 (FIXED): VMware Workspace ONE Access, Identity Manager, and vRealize Automation LPE

Threat Research

CVE-2022-31660 and CVE-2022-31661 (FIXED): VMware Workspace ONE Access, Identity Manager, and vRealize Automation LPE

Spencer McIntyre's avatar

Spencer McIntyre

Building Cybersecurity KPIs for Business Leaders and Stakeholders

Industry Trends

Building Cybersecurity KPIs for Business Leaders and Stakeholders

Rapid7's avatar

Rapid7

What We're Looking Forward to at Black Hat, DEF CON, and BSidesLV 2022

Threat Research

What We're Looking Forward to at Black Hat, DEF CON, and BSidesLV 2022

Jesse Mack's avatar

Jesse Mack

QNAP Poisoned XML Command Injection (Silently Patched)

Exposure Management

QNAP Poisoned XML Command Injection (Silently Patched)

Jake Baines's avatar

Jake Baines

The Future of the SOC Is XDR

Security Operations

The Future of the SOC Is XDR

Dina Durutlic's avatar

Dina Durutlic

Primary Arms PII Disclosure via IDOR (FIXED)

Threat Research

Primary Arms PII Disclosure via IDOR (FIXED)

Tod Beardsley's avatar

Tod Beardsley

Collaboration Drives Secure Cloud Innovation: Insights From AWS re:Inforce

Cloud and Devops Security

Collaboration Drives Secure Cloud Innovation: Insights From AWS re:Inforce

Jesse Mack's avatar

Jesse Mack

Shift Left: Secure Your Innovation Pipeline

Products and Tools

Shift Left: Secure Your Innovation Pipeline

Ryan Blanchard's avatar

Ryan Blanchard

Metasploit Weekly Wrap-Up: Jul. 29, 2022

Exposure Management

Metasploit Weekly Wrap-Up: Jul. 29, 2022

Spencer McIntyre's avatar

Spencer McIntyre

[VIDEO] An Inside Look at AWS re:Inforce 2022 From the Rapid7 Team

Cloud and Devops Security

[VIDEO] An Inside Look at AWS re:Inforce 2022 From the Rapid7 Team

Jesse Mack's avatar

Jesse Mack

[The Lost Bots] Season 2, Episode 2: The Worst and Best Hollywood Cybersecurity Depictions

Detection and Response

[The Lost Bots] Season 2, Episode 2: The Worst and Best Hollywood Cybersecurity Depictions

Rapid7's avatar

Rapid7

What’s New in InsightVM and Nexpose: Q2 2022 in Review

Products and Tools

What’s New in InsightVM and Nexpose: Q2 2022 in Review

Randi Whitcomb's avatar

Randi Whitcomb

Active Exploitation of Atlassian’s Questions for Confluence App CVE-2022-26138

Exposure Management

Active Exploitation of Atlassian’s Questions for Confluence App CVE-2022-26138

Glenn Thorpe's avatar

Glenn Thorpe