Rapid7

rapid7.com

Imported from official source

Rapid7 — publications from its own official source.

Type
Company
Scope
US · national
Website
rapid7.com
Feed
Atom

Publications 29

  1. SMTP is the key: BPFDoor and AVERAT hitting the network edge

    Rapid7 tracked a set of Linux samples that blend into the software and device conventions of the telecom environments they target. The set spans a newly observed BPFDoor variant, a BPF Rekoobe...

  2. How AI Is Changing the Roles Required in the Security Operations Center

    As AI takes on more of the enrichment, correlation, and initial assessment inside the SOC, roles, skills, and KPIs still require deliberate redesign. Security leaders need to decide where automatio...

  3. Critical Cisco Catalyst SD-WAN Manager API authentication bypass exploited in the wild (CVE-2026-76504)

    On September 30, 2026, Cisco published a security advisory for CVE-2026-76504, a critical API authentication bypass vulnerability affecting Cisco Catalyst SD-WAN Manager. The vulnerability has a CV...

  4. Higher education is under siege, and fragmented security is making it harder to respond

    Higher education faces a difficult security equation. Universities hold large volumes of sensitive student, financial, health, and research data while supporting open networks, distributed users, l...

  5. Zero-Day Exploitation of Citrix NetScaler ADC and Gateway: CVE-2026-88771 and CVE-2026-88772

    On September 27, 2026, Citrix disclosed eight new vulnerabilities affecting NetScaler ADC and NetScaler Gateway, including two critical remote code execution (RCE) vulnerabilities: CVE-2026-88771 a...

  6. When Business Email Compromise Starts Rewriting Reality

    Business Email Compromise (BEC) operates on a familiar playbook. Threat actors breach a mailbox, silently monitor operations, map approval chains, and ultimately exploit that access to divert funds...

    Cybersecurity 2 versions
  7. How dynamic application security testing validates risk at runtime

    Security teams already have long queues of potential application vulnerabilities. The useful question is what happens next: can they see how a weakness behaves in a running application, reproduce t...

    Cybersecurity 2 versions
  8. CVE-2026-94127: Critical Unauthenticated RCE in F5 BIG-IP APM

    On September 22, 2026, F5 published a security advisory for CVE-2026-94127, a critical heap-based buffer overflow vulnerability affecting F5 BIG-IP Access Policy Manager (APM). The vulnerability ha...

    Cybersecurity 2 versions
  9. CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild

    On September 14, 2026, Cisco published a security advisory for CVE-2026-76461, a critical SQL injection vulnerability affecting Cisco AsyncOS Software for Cisco Secure Email Gateway. The vulnerabil...

    Cybersecurity 2 versions
  10. Rapid7 Named Among Notable Vendors in Forrester MDR Landscape: Why the Future is Exposure-informed, Preemptive MDR

    The managed detection and response (MDR) market has reached a turning point. We’ve gone beyond the baseline of 24/7 monitoring focusing on the speed of detection and moved to a world with a converg...

    Cybersecurity 2 versions
  11. CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild

    On September 10, 2026, GitLab published a critical patch release for GitLab Community Edition (CE) and Enterprise Edition (EE). The release addresses CVE-2026-85706, a critical path traversal vulne...

    Cybersecurity 2 versions
  12. Metasploit Wrap Up: This One Goes to Sixteen!

    Another banger from Metasploit with sixteen new modules, including ten exploit modules, with five on the CISA KEV list. Cisco, Papercut, Sonicwall, Jetbrains, and Langflow all have exploit modules,...

    Cybersecurity 2 versions
  13. The Fraud Ecosystem: A Transition From Known Marketplaces to a Fragmented Environment

    The surge in emerging threat actors directly correlates with the rapid escalation of victim counts and stolen financial resources. Simultaneously, this growth has spurred the proliferation of speci...

    Cybersecurity 2 versions
  14. Credentialed Pre-Port Discovery: Don't Probe the Host, Ask it

    If your scan engine already holds credentials for a host, it can ask that host which ports are open instead of probing for them. Every scan begins with the same question: which ports on this host a...

    Cybersecurity 2 versions
  15. Patch Tuesday - September 2026

    Microsoft is publishing 974 own-product vulnerabilities on September 2026 Patch Tuesday, including 723 vulnerabilities in Windows. Along with Microsoft fixes for 25 non-Microsoft CVEs, that brings ...

    Cybersecurity 2 versions
  16. CVE-2026-86206, CVE-2026-86207: N-able N-central Authentication Bypass (FIXED)

    While conducting research into a recent N-able N-central authentication bypass vulnerability (CVE-2026-18577), Rapid7 Labs discovered two new vulnerabilities affecting the latest version of N-centr...

    Cybersecurity 2 versions
  17. DPRK APTs: Ted backdoor and curlRAT target South Korean media and automotive sectors

    A new Linux toolkit, identified by Rapid7 Labs, has been targeting organizations across South Korea’s automotive and media industries with minimal detection. The campaign made use of a HAProxy inst...

    Cybersecurity 2 versions
  18. Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild

    On September 1, 2026, SonicWall disclosed two vulnerabilities affecting SonicWall SMA1000 appliances that the vendor says are being actively exploited in the wild. The vulnerabilities, CVE-2026-835...

    Cybersecurity 2 versions
  19. Metasploit Wrap Up: Payloads and Exploits, and Scanners, Oh my!

    This release has something for everyone: scanner modules, payloads, and exploits. This release’s scanners cover Drupal, PanOS, WordPress, and SCADA; this release’s exploits cover Tenable, Flowise, ...

  20. PaperCut NG/MF Critical Zero-Day Exploited in the Wild

    On August 27, 2026, PaperCut Software published an urgent security advisory stating that it is investigating active exploitation of a vulnerability affecting PaperCut NG and PaperCut MF. PaperCut h...

    Cybersecurity 2 versions
  21. Identity-as-a-Service: Uncovering Dark Web Marketplaces Trading Executive SSNs

    Despite modern verification controls, identity theft remains one of the most pervasive threats to both individuals and enterprise organizations. U.S. Federal Trade Commission statistics show over 1...

    Cybersecurity 2 versions
  22. Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)

    A technical analysis of CVE-2026-63520, a remote code execution vulnerability due to an unrestricted .NET type instantiation, affecting Microsoft SharePoint.

  23. CVE-2026-19490: Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway

    On August 19, 2026, a security advisory was published for CVE-2026-19490, a critical authentication bypass vulnerability affecting Citrix NetScaler ADC and NetScaler Gateway. The vulnerability carr...

    Cybersecurity 2 versions
  24. Rapid7 and Licencias OnLine Partner to Accelerate Cybersecurity Maturity across Latin America

    Cássio De Alcântara is Director, LATAM Sales at Rapid7. Across Latin America, organizations are embracing cloud, AI, and digital transformation to drive innovation and business growth. These techno...

    Cybersecurity 2 versions
  25. New Report: AI threats are here. Why Q2 2026 signals the end of traditional patch cycles

    You can’t patch everything. So what do you fix first? Findings in Q2 2026 have changed traditional answers. The latest Quarterly Threat Landscape Report from Rapid7 Labs shows vulnerability disclos...

    Cybersecurity 2 versions
  26. Operation ASTERIX: Anatomy of a Crypto Fraud Pipeline

    Operation ASTERIX overviewRapid7 researchers identified an exposed web directory on infrastructure used to support a cryptocurrency fraud operation. The server contained raw phone-number datasets, ...

  27. Africa’s Cybersecurity Challenge Is Bigger Than Access to Technology

    Gopan Sivasankaran is Rapid7's Regional Director, Middle East & Africa.Across Egypt, Nigeria, and Kenya, organizations are expanding their use of cloud infrastructure, artificial intelligence, ...

  28. Metasploit Wrap Up: Lot of summer shells and fit http profiles

    This wrap-up brings a full-on shell parade. Thirteen shiny new modules landed, starting with a buffet of RCEs. WordPress WP2Shell, Ghost CMS, Joomla JCE, Langflow, OpenCATS, Pterodactyl Panel, Soni...

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.