Posts tagged Labs

Threat Research
Rapid7 Analysis: CVE-2021-21975
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-12271: Sophos XG Firewall Pre-Auth SQL Injection Vulnerability
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2021-3450
Rapid7 Labs

Threat Research
Rapid7 Analysis: OpenSSL TLS Server Crash (NULL pointer dereference) — CVE-2021-3449
Rapid7 Labs

Threat Research
Rapid7 Analysis: K03009991: iControl REST unauthenticated remote command execution vulnerability CVE-2021-22986
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2021-24085
Rapid7 Labs

Threat Research
Rapid7 Analysis: VMware vSphere Client Unauth Remote Code Execution Vulnerability — CVE-2021-21972
Rapid7 Labs

Threat Research
Rapid7 Analysis: SolarWinds Orion Platform Unauthenticated RCE (CVE-2021-25274)
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2021-3007
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-28188
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-7961
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2021-3156 "Baron Samedit"
Rapid7 Labs

Vulnerabilities and Exploits
State-Sponsored Threat Actors Target Security Researchers
boB Rudis

Threat Research
Rapid7 Analysis: CVE-2020-17132
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-29583 Zyxel USG Hard-Coded Admin Creds
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-15505
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-10148 SolarWinds Orion API authentication bypass and RCE
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-3992 — ESXi OpenSLP remote code execution vulnerability
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-16846 — SaltStack Unauthenticated Shell Injection
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-25592 — SaltStack Authentication Bypass and Salt SSH Command Execution
Rapid7 Labs

Threat Research
Rapid7 Analysis: CVE-2020-14871
Rapid7 Labs