Rapid7
@rapid7
Cybersecurity pros: Rapid7 lets you command your attack surface, smash silos, stay steps ahead of attackers, and take breaches from “inevitable” to preventable.
📱 MFA is often touted as a cure-all for data breaches. But a well-timed push notification might be all a threat actor needs to get a foothold. Read on for how a Rapid7 pentester breached a university's systems – all thanks to one unsuspecting professor: r-7.co/3IMdcaK

In the first half of 2025, Rapid7 Labs tracked 96 unique ransomware groups — a 41% increase over the same period in 2024. This isn’t just a number; it’s a wake-up call ⏰: rapid7.com/blog/post/q2-2…
Rapid7 is showing up at #BHUSA and DEF CON with live demos, new tooling, and research on everything from embedded exploits to AI-driven attacks. 🎤 Explore the full session lineup: r-7.co/46p4Xv7
✅ Major ransomware groups disbanding (or disappearing altogether) ✅ Affiliates drifting between threat groups, their loyalty in question ✅ Threat actors "padding their stats" by repurposing stale data Rapid7's Q2 2025 ransomware analysis has it all: r-7.co/413FFPD

🚨 Active Patching has arrived in Exposure Command. Powered by @Automox, this new solution helps security and IT teams automatically remediate vulnerabilities or apply compensating controls in real time — even when a patch doesn’t exist. Read the news: r-7.co/4f1VpZ6

On 7/19/25, #Microsoft released an advisory for CVE-2025-53770, a critical RCE vuln. affecting on-prem #SharePoint servers. Rapid7 has since observed active exploitation in customer environments. Find indicators of compromise & more in a new blog: r-7.co/3GYD7eN
🚨 On 7/18/25, CrushFTP disclosed CVE-2025-54309 affecting versions <10.8.5 and 11.3.4_23 across all platforms The vuln is being exploited in the wild. A “last_logins” value set for the internal ‘default’ user may indicate compromise. Full analysis: r-7.co/40pEUjN
⏱️ 200+ analyst hours saved per week 🎯 99.93% benign disposition accuracy 🔎 Seamless transparency via the SIEM This is the impact we've already seen in Rapid7's SOC, thanks to AI. Get to know the OSCAR Framework, the investigative backbone of our SOC ⤵️ r-7.co/4kLFyiP
📢 Just announced at AWS Summit NY: InsightCloudSec + InsightAppSec are now live in the new AWS Marketplace AI Agents and Tools category. Secure your GenAI stack—from cloud to LLMs—with visibility, control, and compliance from day one. Get the details: r-7.co/4m2Rait

Phibro Animal Health gained unified visibility, continuous global monitoring, and risk-based prioritization with Rapid7 MDR and Exposure Command, transforming how they detect and respond to threats. Read their story: r-7.co/46Ftxb5
With security data coming from all directions, it’s tough to know what to fix first. ⚡️ Exposure Command speeds up remediation with a single risk score combining AI, threat intel, and exploitability data. Discover Exposure Command: r-7.co/3U7X0mE
Agentic AI doesn’t just respond, it acts. That changes the game for security leaders with new risks and opportunities. On #AIAppreciationDay, here is what you need to know about how agentic AI impacts security operations 👉 r-7.co/4kWFCg6


Rapid7 was named a Leader in the 2025 Frost Radar™ for MDR. 🛡️🏆 We’re recognized for AI-driven investigation, risk-aware response, and a platform that unifies telemetry, context, and action. 📰 More here: r-7.co/3ILKiHI

With an increasingly complex digital landscape, more organizations have evolved their CTI processes, incorporating AI and automation. Sponsored by Rapid7, the 2025 SANS CTI Survey highlights how the CTI field is maturing. Download the report: r-7.co/4luUwKZ

Your attack surface is constantly changing. Your risk picture should keep up. Exposure Command gives visibility and context to uncover critical exposures and act fast from endpoint to cloud. See the platform. Access research. Understand why it matters 👉 r-7.co/3U7X0mE
Firmware gaps. Custom tools. Ransomware in CPUs. Christiaan Beek breaks down where attackers are headed, what orgs are missing, and why basics like patching still matter. 🔍 More in @cyberdailyau: r-7.co/40T4r4R
We're cooking something up for Black Hat this year. Check out what's on the menu: r-7.co/3GyObzi | #BHUSA

“Due to the sensitive nature of this host, such exploits were not explored.” Rapid7 noticed this theme across 5 years of a client's pentesting reports, a hallmark of overly fearful & risk-averse consultancy. Read on in a new PenTales blog: r-7.co/44qoOZF
Security teams can't afford to chase CVEs forever. Exposure management brings the full visibility, context, and prioritization needed to keep your organization secure. Learn how to cut through the noise in a new eBook: r-7.co/4nvPaAO

📊 In 2024, there were over 100 software vulnerabilities announced each day. But you don’t have to rush to remediate each CVE the moment they arise – having key details surfaced gives you the power of choice, context, and command. More in a new blog: r-7.co/3U3SBB7
