The Rapid7 Blog:
Your Signal in the Security Noise

Insights, stories, and guidance from our global security and research teams.

Weekly security updates — no spam. Privacy Policy.

Metasploit Wrap-Up 09/26/2025

Products and Tools

Metasploit Wrap-Up 09/26/2025

Christopher Granleese's avatar

Christopher Granleese

CVE-2025-20333, CVE-2025-20362, CVE-2025-20363 - Multiple critical vulnerabilities affecting Cisco products

Vulnerabilities and Exploits

CVE-2025-20333, CVE-2025-20362, CVE-2025-20363 - Multiple critical vulnerabilities affecting Cisco products

Ryan Emmons's avatar

Ryan Emmons

CVE-2025-10184: OnePlus OxygenOS Telephony provider permission bypass (FIXED as of October 11, 2025)

Vulnerabilities and Exploits

CVE-2025-10184: OnePlus OxygenOS Telephony provider permission bypass (FIXED as of October 11, 2025)

Rapid7's avatar

Rapid7

Metasploit Weekly Wrap-Up 09/19/2025

Products and Tools

Metasploit Weekly Wrap-Up 09/19/2025

Spencer McIntyre's avatar

Spencer McIntyre

CVE-2025-10035 - Critical unauthenticated RCE in GoAnywhere MFT

Vulnerabilities and Exploits

CVE-2025-10035 - Critical unauthenticated RCE in GoAnywhere MFT

Stephen Fewer's avatar

Stephen Fewer

Rapid7 and Amazon Nova Are Revolutionizing AI in Cybersecurity

Artificial Intelligence

Rapid7 and Amazon Nova Are Revolutionizing AI in Cybersecurity

Rapid7's avatar

Rapid7

Staying Ahead of Attackers: What SOC Teams Are Doing Differently in 2025

Industry Trends

Staying Ahead of Attackers: What SOC Teams Are Doing Differently in 2025

Rapid7's avatar

Rapid7

Metasploit Wrap-Up 09/12/25

Products and Tools

Metasploit Wrap-Up 09/12/25

Jack Heysel's avatar

Jack Heysel

Rapid7 Q2 2025 Incident Response Findings

Detection and Response

Rapid7 Q2 2025 Incident Response Findings

Chris Boyd's avatar

Chris Boyd

Akira Ransomware Group Utilizing SonicWall Devices for Initial Access

Detection and Response

Akira Ransomware Group Utilizing SonicWall Devices for Initial Access

Rapid7's avatar

Rapid7

ANY.RUN and Rapid7 Threat Feed Integration

Products and Tools

ANY.RUN and Rapid7 Threat Feed Integration

Rapid7's avatar

Rapid7

Patch Tuesday - September 2025

Exposure Management

Patch Tuesday - September 2025

Adam Barnett's avatar

Adam Barnett

Cybersecurity Awareness Month 2025: How AI Is Reshaping Phishing, Ransomware, and Everyday Security

Industry Trends

Cybersecurity Awareness Month 2025: How AI Is Reshaping Phishing, Ransomware, and Everyday Security

Rapid7's avatar

Rapid7

Metasploit Weekly Wrap-Up 09/05/2025

Products and Tools

Metasploit Weekly Wrap-Up 09/05/2025

Simon Janusz's avatar

Simon Janusz

InsightAppSec: Time-based One-Time Passwords, MFA Automation Using Macros

Products and Tools

InsightAppSec: Time-based One-Time Passwords, MFA Automation Using Macros

Shane Queeney's avatar

Shane Queeney

Safeguarding Salesforce: What You Need to Know About the OAuth Token Compromise

Detection and Response

Safeguarding Salesforce: What You Need to Know About the OAuth Token Compromise

Rapid7's avatar

Rapid7

New Infographic Showcases How Rapid7 MDR Stops Threats Fast

Detection and Response

New Infographic Showcases How Rapid7 MDR Stops Threats Fast

Rapid7's avatar

Rapid7

An Earth-Shattering Kaboom: Bringing a Physical ICS Penetration Testing Environment to Life (Part 2)

Threat Research

An Earth-Shattering Kaboom: Bringing a Physical ICS Penetration Testing Environment to Life (Part 2)

Anna Katarina Quinn's avatar

Anna Katarina Quinn

Flashrom to Hexedit to Root: DEF CON 33 IoT Village Exercise

Vulnerabilities and Exploits

Flashrom to Hexedit to Root: DEF CON 33 IoT Village Exercise

Rapid7's avatar

Rapid7

Metasploit Weekly Wrap-Up 08/28/2025

Products and Tools

Metasploit Weekly Wrap-Up 08/28/2025

Alan David Foster's avatar

Alan David Foster

Rapid7 Named a Leader in the 2025 IDC MarketScape for Exposure Management

Exposure Management

Rapid7 Named a Leader in the 2025 IDC MarketScape for Exposure Management

Rapid7's avatar

Rapid7