Posts tagged Research

Vulnerabilities and Exploits
CVE-2020-12271: Sophos XG Firewall Pre-Auth SQL Injection Vulnerability Remediation Guidance and Exposure Overview
boB Rudis

Threat Research
Meet AttackerKB
Caitlin Condon

Detection and Response
Phishing for SYSTEM on Microsoft Exchange (CVE-2020-0688)
Tom Sellers

Threat Research
CVE-2020-0796: Microsoft SMBv3 Remote Code Execution Vulnerability Analysis
Bryce Abdo

Threat Research
Rapid7 2020 Threat Report: Exposing Common Attacker Trends
Tod Beardsley

Security Operations
How We Used Data Science Magic to Predict Key RSA 2020 Themes and Takeaways
Mark Hamill

Threat Research
DOUBLEPULSAR over RDP: Baselining Badness on the Internet
Tom Sellers

Products and Tools
DOUBLEPULSAR RCE 2: An RDP Story
William Vu

Threat Research
Active Exploitation of Citrix NetScaler (CVE-2019-19781): What You Need to Know
Derek Abdine

Threat Research
Oh, Behave! Who Made It to Rapid7 Labs' Naughty List(s) in 2019?
boB Rudis

Threat Research
Cisco Self-Signed Certificate Expiration on Jan. 1, 2020: What You Need to Know
boB Rudis

Vulnerabilities and Exploits
IoT Vuln Disclosure: Children's GPS Smart Watches (R7-2019-57)
Tod Beardsley

Threat Research
What a Difference a Year Makes: Revisiting Our Inaugural Fortune 500 ICER One Year Later
boB Rudis

Threat Research
Rapid7 Introduces Industry Cyber-Exposure Report: Deutsche Börse Prime Standard 320
Tod Beardsley

Threat Research
R7-2019-32: Denial-of-Service Vulnerabilities in Beckhoff TwinCAT PLC Environment
Tod Beardsley

Products and Tools
Open-Source Command and Control of the DOUBLEPULSAR Implant
William Vu

Threat Research
This One Time on a Pen Test: Our Accidental Win
Ted Raffle

Threat Research
This One Time on a Pen Test: What’s in the Box?
Ted Raffle

Exposure Management
This One Time on a Pen Test: Your Mouse Is My Keyboard
Rapid7

Threat Research
This One Time on a Pen Test: Nerds in the NERC
Jonathan Stines

Threat Research
This One Time on a Pen Test: Missed a Spot
Ted Raffle