The Rapid7 Blog:
Your Signal in the Security Noise

Insights, stories, and guidance from our global security and research teams.

Weekly security updates — no spam. Privacy Policy.

2022 Cloud Misconfigurations Report: Cloud Security Breaches and Attack Trends

Threat Research

2022 Cloud Misconfigurations Report: Cloud Security Breaches and Attack Trends

Jacob Roundy's avatar

Jacob Roundy

What's New in InsightVM and Nexpose: Q1 2022 in Review

Products and Tools

What's New in InsightVM and Nexpose: Q1 2022 in Review

Roshnee Mistry Shah's avatar

Roshnee Mistry Shah

Metasploit Weekly Wrap-Up: 4/15/22

Exposure Management

Metasploit Weekly Wrap-Up: 4/15/22

Spencer McIntyre's avatar

Spencer McIntyre

InsightAppSec and tCell Bring New DevSecOps Improvements in Q1

Products and Tools

InsightAppSec and tCell Bring New DevSecOps Improvements in Q1

Nate Crampton's avatar

Nate Crampton

InsightCloudSec Supports the Recently Updated NSA/CISA Kubernetes Hardening Guide

Exposure Management

InsightCloudSec Supports the Recently Updated NSA/CISA Kubernetes Hardening Guide

Alon Berger's avatar

Alon Berger

CVE-2022-28810: ManageEngine ADSelfService Plus Authenticated Command Execution (Fixed)

Exposure Management

CVE-2022-28810: ManageEngine ADSelfService Plus Authenticated Command Execution (Fixed)

Jake Baines's avatar

Jake Baines

Patch Tuesday - April 2022

Detection and Response

Patch Tuesday - April 2022

Greg Wiseman's avatar

Greg Wiseman

CVE-2022-24527: Microsoft Connected Cache Local Privilege Escalation (Fixed)

Exposure Management

CVE-2022-24527: Microsoft Connected Cache Local Privilege Escalation (Fixed)

Jake Baines's avatar

Jake Baines

3 Ways InsightIDR Users Are Achieving XDR Outcomes

Products and Tools

3 Ways InsightIDR Users Are Achieving XDR Outcomes

Jesse Mack's avatar

Jesse Mack

Metasploit Wrap-Up: 4/8/22

Products and Tools

Metasploit Wrap-Up: 4/8/22

Simon Janusz's avatar

Simon Janusz

7 Rapid Questions: Meet Adrian Stewart, Aspiring Pilot Turned Product Manager

Rapid7 Blog

7 Rapid Questions: Meet Adrian Stewart, Aspiring Pilot Turned Product Manager

Rapid7's avatar

Rapid7

Lessons in IoT Hacking: How to Dead-Bug a BGA Flash Memory Chip

Detection and Response

Lessons in IoT Hacking: How to Dead-Bug a BGA Flash Memory Chip

Deral Heiland's avatar

Deral Heiland

The Forecast Is Flipped: Flipping L&D in New Hire Training

Industry Trends

The Forecast Is Flipped: Flipping L&D in New Hire Training

Megan Yawor's avatar

Megan Yawor

MDR Plus Threat Intel: 414 New Detections in 251 Days (You’re Welcome)

Threat Research

MDR Plus Threat Intel: 414 New Detections in 251 Days (You’re Welcome)

Sam Adams's avatar

Sam Adams

What's New in InsightIDR: Q1 2022 in Review

Products and Tools

What's New in InsightIDR: Q1 2022 in Review

Margaret Wei's avatar

Margaret Wei

Security for All: How the Rapid7 Cybersecurity Foundation Will Expand Access and Inclusion

Industry Trends

Security for All: How the Rapid7 Cybersecurity Foundation Will Expand Access and Inclusion

Peter Kaes's avatar

Peter Kaes

Cloud Pentesting, Pt. 3: The Impact of Ecosystem Maturity

Exposure Management

Cloud Pentesting, Pt. 3: The Impact of Ecosystem Maturity

Eric Mortaro's avatar

Eric Mortaro

Sharpen Your IR Capabilities With Rapid7’s Detection and Response Workshop

Detection and Response

Sharpen Your IR Capabilities With Rapid7’s Detection and Response Workshop

Mikayla Wyman's avatar

Mikayla Wyman

Securing Your Applications Against Spring4Shell (CVE-2022-22965)

Exposure Management

Securing Your Applications Against Spring4Shell (CVE-2022-22965)

Bria Grangard's avatar

Bria Grangard

Metasploit Weekly Wrap-Up: 4/1/22

Exposure Management

Metasploit Weekly Wrap-Up: 4/1/22

Alan David Foster's avatar

Alan David Foster

Update on Spring4Shell’s Impact on Rapid7 Solutions and Systems

Vulnerabilities and Exploits

Update on Spring4Shell’s Impact on Rapid7 Solutions and Systems

Rapid7's avatar

Rapid7