The Rapid7 Blog:
Your Signal in the Security Noise
Insights, stories, and guidance from our global security and research teams.
Featured posts
3876 Results

Products and Tools
Weekly Metasploit Update: NTLM Relay Priv Esc, MCP Server Integration, Paperclip AI RCE Chain, and more
Alan David Foster
Industry Trends
Why Security Teams Need To Start Earlier
Tom Caiazza

Threat Research
Malware à la Mode: Tracking Dropping Elephant Tradecraft Through a China-Themed Loader Chain
Anna Širokova

Security Operations
NIS2 is raising the bar. Here’s how to turn readiness into resilience.
Sabeen Malik

Security Operations
Does Your Security Programme Align With NIS2 Requirements?
Sabeen Malik

Artificial Intelligence
Beyond the Score: Using AI to Translate CVEs into Real-World Business Risk
Rapid7

Products and Tools
Weekly Metasploit Update: New Kerberos/Certificate tracing options, and multiple new modules
Spencer McIntyre

Vulnerabilities and Exploits
Active Exploitation of Oracle PeopleSoft Zero-Day (CVE-2026-35273)
Jonah Burgess

Threat Research
Criminal AI-as-a-Service in 2026: How the Underground Market Is Operationalizing Cybercrime
Jeremy Makowski

Artificial Intelligence
Automated Threat Hunting: Turning Threat Intelligence into Executable Hunt Plans
Blake McDermott

Vulnerabilities and Exploits
CVE-2026-10520, CVE-2026-10523 - Multiple critical vulnerabilities affecting Ivanti Sentry
Rapid7

Exposure Management
Patch Tuesday - June 2026
Adam Barnett

Artificial Intelligence
Rapid7 Gains Access To Anthropic’s Project Glasswing To Explore Frontier AI For Cybersecurity
Wade Woolwine

Vulnerabilities and Exploits
Critical Check Point VPN Zero-Day Exploited in the Wild (CVE-2026-50751)
Rapid7

Products and Tools
Weekly Metasploit Update: Apache ActiveMQ RCE, Gogs Rebase RCE, and Windows Kernel Pointer Enum
Brendan Watters

Detection and Response
How the “Swiss Cheese” model can help you choose the right MDR provider
David Higgs

Industry Trends
A Day in the Life of an MDR Analyst: Inside the Modern SOC
Emma Burdett

Vulnerabilities and Exploits
CVE-2026-0826: How an Old Bug Can Feed AI-Powered Impersonation
Douglas McKee, Director, Vulnerability Intelligence

Vulnerabilities and Exploits
CVE-2026-0826: Critical unauthenticated stack buffer overflow in HP Poly VVX and Trio VoIP Phones (FIXED)
Stephen Fewer
Culture
Rapid7 and Exclusive Networks Expand Partnership Across the Nordics
Mike Ryan

Products and Tools
Metasploit Wrap Up 05/29/2026
Spencer McIntyre


