Sign in

Rapid7

@rapid7.com
241 followers 12 following 208 posts

Rapid7 is a leader in AI-powered managed cybersecurity operations, trusted to advance organizations’ cyber resilience. Unified exposure and detection enable 11,500+ customers to reduce risk and disrupt attackers. 🔗: rapid7.com

PostsRepliesMedia
Rapid7 @rapid7.com · 17/06/2026
Rapid7 researchers have identified a sophisticated malware campaign attributed to the threat actor #DroppingElephant, characterized by the use of a China-themed decoy document to deliver a heavily reworked, in-memory RAT. Technical analysis, IoCs & more: r-7.co/4va2vSF
240
Rapid7 @rapid7.com · 12/06/2026
🚨 On 6/10/26, #Oracle published a security alert for CVE-2026-35273, a critical vuln. affecting PeopleSoft Enterprise PeopleTools. The campaign has been attributed to the ShinyHunters collective, well known for data theft and extortion. More in our blog: r-7.co/4aEClz9
020
Rapid7 @rapid7.com · 11/06/2026
AI is actively embedding itself into today's criminal tradecraft – lending itself to social engineering, fraud, impersonation, identity abuse & more. Get to know tools like WormGPT and BruteforceAI, plus, how orgs should react, all in a new blog: r-7.co/4ooQFS7
010
Rapid7 @rapid7.com · 10/06/2026
🚨 On June 9, 2026, #Ivanti published a security advisory for 2 critical vulnerabilities affecting Ivanti Sentry (FKA MobileIron Sentry). CVE-2026-10520 (CVSS 10.0) is an OS command injection vuln, and CVE-2026-10523 (CVSS 9.9) is an authentication bypass vuln. Read on: r-7.co/4arpQHd
000
Rapid7 @rapid7.com · 08/06/2026
🚨 On 6/8/26, #CheckPoint published a security advisory for a critical vuln. affecting its Remote Access VPN, Mobile Access, and Spark Firewall products. CVE-2026-50751 allows an unauth. attacker to establish a VPN session without providing valid credentials. More: r-7.co/4fyoJJc
000
Rapid7 @rapid7.com · 21/05/2026
🌐 Announcing Rapid7's Threat Landscape Report for Q1, 2026. Threat actors favor 0-click vulns over social engineering, lines blur between state actors & hacktivist groups, and the cybercriminal economy splinters. Blog: r-7.co/49Ybbmw Report: r-7.co/43koLwV
000
Rapid7 @rapid7.com · 13/05/2026
Rapid7 observed a recent enterprise intrusion that began with a fake IT support Teams message, escalated via fake lock screens, Python-based RATs & a kernel exploit, then secured domain-wide credential access – all within 2 days. Get to know #ModeloRAT: r-7.co/4npcZuB
011
Rapid7 @rapid7.com · 07/05/2026
Today, Rapid7 was included in OpenAI's Trusted Access for Cyber program and new model launch announcement. To us, this partnership means equipping security teams with advanced capabilities and meaningfully improving their cyber resilience. Keep reading: r-7.co/3QNdgv9
020
Rapid7 @rapid7.com · 06/05/2026
A sophisticated, state-sponsored intrusion observed in early 2026 appeared to be a standard Chaos ransomware attack. Forensic analysis has since unmasked it as a false flag attempt, linking the incident to the Iranian APT #MuddyWater. More in a new blog: r-7.co/4tiWod0
000
Rapid7 @rapid7.com · 29/04/2026
🚨 On 4/28/26, #cPanel issued a security update to fix a critical vuln. affecting its WHM and WP Squared products. With a CVSS score of 9.8, CVE-2026-41940 allows unauth. remote attackers to bypass authentication & gain administrative access to systems: r-7.co/4vZ0vgX
010
Rapid7 @rapid7.com · 27/04/2026
Fewer than 10% of vulnerabilities are exploited, but most are prioritized as urgent. Context-driven exposure prioritization is essential, combining threat intel, asset context, & control validation to focus on what’s actually exploitable. Learn more: r-7.co/4cGFFtQ
000
Rapid7 @rapid7.com · 22/04/2026
Exploited high and critical vulnerabilities are up 105% YoY. The 2026 Global Threat Landscape Report breaks down how shrinking disclosure-to-exploitation timelines are reshaping how teams assess and respond. Download it here: r-7.co/3PicnK6
012
Rapid7 @rapid7.com · 21/04/2026
🔎 During a recent IR engagement, Rapid7 recovered 2 #Kyber ransomware payloads. One targeted VMware ESXi infrastructure, and the other, Windows file servers – serving as a rare opportunity to analyze both variants side-by-side. Technical analysis here: r-7.co/4vN8PQY
000
Rapid7 @rapid7.com · 16/04/2026
🚨 On 3/30/26, a security advisory was published for CVE-2026-33032 – a critical vulnerability affecting #NginxUI. This is a missing authentication bug with a CVSS score of 9.8, and exploitation in the wild has begun. More from Rapid7: r-7.co/4mzAr7G
030
Rapid7 @rapid7.com · 15/04/2026
Reactive workflows can’t keep up with AI-driven attacks and expanding attack surfaces. ⏳ In under a month, Rapid7’s Global Cybersecurity Summit will show how teams are aligning exposure, MDR, and AI to anticipate and act on risk earlier. Save your spot: r-7.co/41y8aoA
000
Rapid7 @rapid7.com · 15/04/2026
At Rapid7’s Global Summit, sessions will cover how teams validate detection logic against real attack paths, correlate signals across identity and cloud, and use exposure data to drive earlier detection. More details on each cloud security session: r-7.co/4sBnoEe
000
Rapid7 @rapid7.com · 15/04/2026
At 167, vulnerability totals for #PatchTuesday are higher than usual, driven by expanding AI capabilities. Microsoft is aware of exploitation in the wild for 1, public disclosure for 1 other, & evaluates 19 more as likely to see future exploitation. 👉 r-7.co/4chSSsQ
000
Rapid7 @rapid7.com · 10/04/2026
👀 What's new in Rapid7 products & services? From our acquisition of Kenzo Security to launching Metasploit Pro 5.0.0, we got off to a 🔥 start in 2026. We round up the latest improvements to the Rapid7 Platform & Labs' top Q1 research in a new blog: r-7.co/4dFsD1X
011
Rapid7 @rapid7.com · 31/03/2026
The Initial Access Broker (IAB) market is visibly maturing. In H2 2025... 📈 Asking prices (and the size of targeted orgs) rose drastically 👀 New marketplaces thrive as older forums stall or shut down 🏛️ Government the top-targeted sector For key findings, recommendations & more: r-7.co/4bVvi4Z
000
Rapid7 @rapid7.com · 26/03/2026
Rapid7 announces the acquisition of Kenzo Security to accelerate preemptive, AI-powered security operations. This expands Rapid7’s Command Platform to deliver scalable, machine-speed detection and response that disrupts attackers. Learn more: ​​r-7.co/3NORWnN
000
Rapid7 @rapid7.com · 26/03/2026
▶️ Now Playing: Telecom Sleeper Cells, SD-WAN Bypasses, & LLM Bug Bounties. In Episode 2 of Hacktics and Telemetry, Douglas McKee & @cryptocat.me continue to bring you the latest in cybersecurity news, vuln research, and actionable defensive strategies: r-7.co/4sTbDu5
021
Rapid7 @rapid7.com · 26/03/2026
Starting soon #RSAC: Christiaan Beek, VP of Cyber Intelligence, details new research that uncovered stealth “sleeper cell” access embedded in telecommunications networks by a China-nexus threat actor. This type of compromise impacts everyone - this is a conversation you don’t want to miss.
010
Rapid7 @rapid7.com · 26/03/2026
🚨 Rapid7 Labs has uncovered stealth “sleeper cell” access embedded in telecommunications networks by a China-nexus threat actor. Telecom networks are the central nervous system of the digital world. This type of compromise impacts everyone. IoCs & more: r-7.co/3NQ7szA
141
Rapid7 @rapid7.com · 25/03/2026
Tomorrow at #RSAC: Christiaan Beek shares new research on how advanced actors establish long-term, covert access inside telecom environments, & what that means for defenders. If you’re defending critical infrastructure, this is a conversation you don’t want to miss.
000
Rapid7 @rapid7.com · 24/03/2026
Day 2 at #RSAC ✔️ From booth conversations to new threat intel, it’s already been a busy one — but the week’s not over yet. 🤖 And there's still time to enter the giveaway, your future droid is waiting! See you at Booth S-3201 tomorrow 👋
010
Rapid7 @rapid7.com · 24/03/2026
How easily can a compromised IoT device become a path into cloud and backend systems? New from Rapid7 Labs shows how attackers exploit cellular modules to move into cloud environments, exfiltrate data, & hide command channels in normal device traffic. 🔗 r-7.co/47pAMno
110
Rapid7 @rapid7.com · 24/03/2026
⏳ Starting soon: Deral Heiland, Principal Security Researcher (IoT), presents on how hardware hacking techniques exploit cellular IoT to gain trusted access and how organizations can better defend against these risks. 1:15–2:05 PM | Moscone West 2020 | Reserved seating
000
Rapid7 @rapid7.com · 24/03/2026
Last night at #RSAC: Rapid7 Labs was awarded Cyber Threat Alliance's Most Valuable Early Share! The CTA’s Early Sharing Program enables near real-time sharing of threat intelligence and research to help teams stay ahead of emerging threats.
001
Rapid7 @rapid7.com · 19/03/2026
☁️ Most cloud security programs still rely on static assessment, but that doesn’t show what’s actually exploitable. New capabilities in Rapid7 Exposure Command bring runtime validation and data context to help teams identify and prioritize real risk. 📰 r-7.co/479uojW
000
Rapid7 @rapid7.com · 18/03/2026
Exploited high and critical vulnerabilities increased 105% YoY‼️ Attackers are moving faster than ever, collapsing disclosure timelines, industrializing ransomware, and accelerating attacks with AI. More in the new 2026 Global Threat Landscape Report: r-7.co/4dsL49S
000
Rapid7 @rapid7.com · 17/03/2026
New updates to the Rapid7 PACT Partner Program strengthen how Rapid7 and its partners engage customers and deliver value faster. Partner tiers, streamlined deal motions, and improved program economics support scalable partner-led growth. 📰 r-7.co/4rBnvPS
001
Rapid7 @rapid7.com · 16/03/2026
Rapid7 is bringing new research and insights to RSAC. Christiaan Beek, VP of Cyber Intelligence, will present new research on how threat actors sustain covert telecom espionage using stealth Linux backdoors. More on everything Rapid7 has planned for RSAC: r-7.co/45NKu20
000
Rapid7 @rapid7.com · 12/03/2026
Make room in your RSAC itinerary for Principal Researcher (IoT) Deral Heiland's session on how hardware hacking techniques exploit cellular IoT to gain trusted access & how organizations can better defend against these risks. Get the details: r-7.co/3PywfbV | @Percent_X
010
Rapid7 @rapid7.com · 12/03/2026
🎤👾 Introducing Hacktics and Telemetry, a bi-weekly video and audio podcast out of Rapid7 Labs, starring Rapid7's Doug McKee (fulmetalpackets) & Jonah Burgess (@cryptocat.me)! 🧵 Find episode 1's companion blog here: r-7.co/4di8tuH ▶️ Or dive right into the full vid on YouTube: r-7.co/3NiQfP2
022
Rapid7 @rapid7.com · 11/03/2026
Today, Rapid7 Labs published 2 advisory blogs around the conflict in Iran: 👉 Iran’s Cyber Playbook | Observed cyber activity & trends: r-7.co/4sFoP5c 👉 Detection coverage for Rapid7 customers: r-7.co/4be3vfW
000
Rapid7 @rapid7.com · 10/03/2026
Microsoft published 77 vulnerabilities for March's #PatchTuesday. 2 were publicly disclosed, though none have evidence of exploitation in the wild (yet). 🔍 Get the full analysis of what stood out this month: r-7.co/4rrySd8
010
Rapid7 @rapid7.com · 10/03/2026
🟣 What is Purple Teaming, and what does it look like in practice? The marriage between red & blue teams aims to close the gap between perceived protection and actual defensive capability – replacing assumption with tested validation. Get the rundown for your security program here: r-7.co/4df4leV
000
Rapid7 @rapid7.com · 10/03/2026
🔎 Rapid7 Labs has identified an ongoing, widespread compromise of legitimate #WordPress websites, including regional news outlets, local business websites, and in one case, a Senator's official webpage. Find our full technical analysis in a new blog: r-7.co/3MXudl0
030
Rapid7 @rapid7.com · 04/03/2026
The RAMP forum was a prominent hub for threat actors until early 2026, when the FBI seized its infrastructure. The result was a splintering of groups, actors, and tactics – and now, less visibility into centralized coordination. Get the full story in a research blog from Rapid7 Labs: r-7.co/3PeOnY9
020
Rapid7 @rapid7.com · 03/03/2026
Rapid7's Global Cybersecurity Summit is back ⤵️ For the first time ever, the Summit will span 2 days, with dedicated tracks designed to meet the distinct needs of security leaders and practitioners alike. 👀 More details coming soon. Save your spot: r-7.co/46yJyir
010
Rapid7 @rapid7.com · 25/02/2026
The Jan. 2026 seizure of RAMP disrupted a major ransomware coordination hub, but it did not dismantle the ecosystem behind it. It destabilized trust and accelerated fragmentation across the underground. Get the full story in our latest blog: r-7.co/4qW3yTy
010
Rapid7 @rapid7.com · 24/02/2026
An executive’s online footprint can be more than a privacy issue, it’s also a business risk. 👣 Rapid7 Labs analyzed 100s of engagements from 2024-2025 to understand how exposed today’s executives really are, & what that means for the enterprise. Read on: r-7.co/46mH0E3
011
Rapid7 @rapid7.com · 23/02/2026
SOC teams are flooded with signals but still lack the context to act. False positives and low-value alerts slow investigations and pull focus from real threats. Our latest eBook outlines 4 practical shifts to move beyond alert fatigue 👉 r-7.co/4aO37EH
000
Rapid7 @rapid7.com · 18/02/2026
🚨 In conducting 0 day research against #Grandstream GXP1600 VoIP phones, Rapid7 Labs discovered CVE-2026-2329. The unauthenticated stack-based buffer overflow vulnerability ultimately allows an attacker to intercept phone calls and eavesdrop on audio. Read on: r-7.co/4tIzope
012
Rapid7 @rapid7.com · 12/02/2026
What happens when stolen credit card data is sold like a service? 💳 Dump shops have evolved into carding-as-a-service (CaaS) marketplaces bundling stolen card data, tools, and support. A new blog explores how these illegal marketplaces operate: r-7.co/463WvAF
000
Rapid7 @rapid7.com · 11/02/2026
For February’s #PatchTuesday, Microsoft published 55 vulnerabilities. 6 are already being exploited in the wild, and 3 were publicly disclosed before patches were released. Here's what to know before you patch: r-7.co/4rcV1fX
000
Rapid7 @rapid7.com · 06/02/2026
Your Friday reading sorted: Rapid7's findings around the 'Chrysalis' backdoor & Notepad++ compromise made their media rounds this week. Dive into some of the top pieces below: 🗞️ Reuters: r-7.co/4qhvpNH 🗞️ TechCrunch: r-7.co/4tcjuTQ 🗞️ BleepingComputer: r-7.co/4kkDEHp 🗞️ The Hacker News: r-7.co/4cfkgJD
010
Rapid7 @rapid7.com · 28/01/2026
Which #Microsoft vulnerabilities were of the most value to attackers in 2025? Turns out, the more things change, the more they stay the same. Tech debt, backwards compatibility, elevations of privilege, and a dash of AI – this blog's got it all. Dive in: r-7.co/4qaqduX
000
Rapid7 @rapid7.com · 21/01/2026
🆕 Rapid7 MDR now delivers preemptive detection, investigation, & response for Microsoft environments. Defender signals are integrated into Rapid7 MDR, where they are monitored and investigated by our SOC with exposure and asset risk context. Learn more: r-7.co/4a5emcw
000
Rapid7 @rapid7.com · 01/01/2026
New year, same mission: helping teams take command of the attack surface. 💥 Wishing you a secure New Year from Rapid7!
000