The Rapid7 Blog:
Your Signal in the Security Noise

Insights, stories, and guidance from our global security and research teams.

Weekly security updates — no spam. Privacy Policy.

Opportunistic Exploitation of WSO2 CVE-2022-29464

Exposure Management

Opportunistic Exploitation of WSO2 CVE-2022-29464

Jake Baines's avatar

Jake Baines

Metasploit Weekly Wrap-Up: 4/22/22

Exposure Management

Metasploit Weekly Wrap-Up: 4/22/22

Dean Welch's avatar

Dean Welch

Rapid7 Named a Visionary in 2022 Magic Quadrant™ for Application Security Testing Second Year in a Row

Products and Tools

Rapid7 Named a Visionary in 2022 Magic Quadrant™ for Application Security Testing Second Year in a Row

Bria Grangard's avatar

Bria Grangard

2022 Cloud Misconfigurations Report: Cloud Security Breaches and Attack Trends

Threat Research

2022 Cloud Misconfigurations Report: Cloud Security Breaches and Attack Trends

Jacob Roundy's avatar

Jacob Roundy

What's New in InsightVM and Nexpose: Q1 2022 in Review

Products and Tools

What's New in InsightVM and Nexpose: Q1 2022 in Review

Roshnee Mistry Shah's avatar

Roshnee Mistry Shah

Metasploit Weekly Wrap-Up: 4/15/22

Exposure Management

Metasploit Weekly Wrap-Up: 4/15/22

Spencer McIntyre's avatar

Spencer McIntyre

InsightAppSec and tCell Bring New DevSecOps Improvements in Q1

Products and Tools

InsightAppSec and tCell Bring New DevSecOps Improvements in Q1

Nate Crampton's avatar

Nate Crampton

InsightCloudSec Supports the Recently Updated NSA/CISA Kubernetes Hardening Guide

Exposure Management

InsightCloudSec Supports the Recently Updated NSA/CISA Kubernetes Hardening Guide

Alon Berger's avatar

Alon Berger

CVE-2022-28810: ManageEngine ADSelfService Plus Authenticated Command Execution (Fixed)

Exposure Management

CVE-2022-28810: ManageEngine ADSelfService Plus Authenticated Command Execution (Fixed)

Jake Baines's avatar

Jake Baines

Patch Tuesday - April 2022

Detection and Response

Patch Tuesday - April 2022

Greg Wiseman's avatar

Greg Wiseman

CVE-2022-24527: Microsoft Connected Cache Local Privilege Escalation (Fixed)

Exposure Management

CVE-2022-24527: Microsoft Connected Cache Local Privilege Escalation (Fixed)

Jake Baines's avatar

Jake Baines

3 Ways InsightIDR Users Are Achieving XDR Outcomes

Products and Tools

3 Ways InsightIDR Users Are Achieving XDR Outcomes

Jesse Mack's avatar

Jesse Mack

Metasploit Wrap-Up: 4/8/22

Products and Tools

Metasploit Wrap-Up: 4/8/22

Simon Janusz's avatar

Simon Janusz

7 Rapid Questions: Meet Adrian Stewart, Aspiring Pilot Turned Product Manager

Rapid7 Blog

7 Rapid Questions: Meet Adrian Stewart, Aspiring Pilot Turned Product Manager

Rapid7's avatar

Rapid7

Lessons in IoT Hacking: How to Dead-Bug a BGA Flash Memory Chip

Detection and Response

Lessons in IoT Hacking: How to Dead-Bug a BGA Flash Memory Chip

Deral Heiland's avatar

Deral Heiland

The Forecast Is Flipped: Flipping L&D in New Hire Training

Industry Trends

The Forecast Is Flipped: Flipping L&D in New Hire Training

Megan Yawor's avatar

Megan Yawor

MDR Plus Threat Intel: 414 New Detections in 251 Days (You’re Welcome)

Threat Research

MDR Plus Threat Intel: 414 New Detections in 251 Days (You’re Welcome)

Sam Adams's avatar

Sam Adams

What's New in InsightIDR: Q1 2022 in Review

Products and Tools

What's New in InsightIDR: Q1 2022 in Review

Margaret Wei's avatar

Margaret Wei

Security for All: How the Rapid7 Cybersecurity Foundation Will Expand Access and Inclusion

Industry Trends

Security for All: How the Rapid7 Cybersecurity Foundation Will Expand Access and Inclusion

Peter Kaes's avatar

Peter Kaes

Cloud Pentesting, Pt. 3: The Impact of Ecosystem Maturity

Exposure Management

Cloud Pentesting, Pt. 3: The Impact of Ecosystem Maturity

Eric Mortaro's avatar

Eric Mortaro

Sharpen Your IR Capabilities With Rapid7’s Detection and Response Workshop

Detection and Response

Sharpen Your IR Capabilities With Rapid7’s Detection and Response Workshop

Mikayla Wyman's avatar

Mikayla Wyman