Rapid7 is a leader in AI-powered managed cybersecurity operations. 11,500+ customers utilize Rapid7 to disrupt attackers and advance their cyber resilience.

Boston, MA
Rapid7 has been named a Leader in the 2026 IDC MarketScape for Worldwide DAST, which we believe highlights our strength in validating application risk under runtime conditions. Our take on the Vendor Assessment in a new blog: rapid7.com/blog/post/em-dyna…
2
8
2,393
🚨 On 9/22/26, #F5 published a security advisory for CVE-2026-94127 – a critical heap-based buffer overflow vuln. affecting F5 BIG-IP APM. An unauth. attacker with network access to an affected virtual server may be able to achieve RCE. More in our blog: rapid7.com/blog/post/etr-cve…
3
8
18
4,237
⏱️ Tick Tock, @tuukkarask. Preseason is finally here, and Rapid7 is proud to kick off another year as the Official Cybersecurity Partner of the @NHLBruins. Let's go B's! 🧡🐻
1
2
3,338
Rapid7 retweeted
All systems go.
57
787
37,896
🔎 Our researchers leveraged historical Rapid7 telemetry to map out how underground SSN marketplaces operate – surfacing the profiles of numerous affected corporate executives and much more. Full technical analysis on our blog: r-7.co/4h8ibQx
1
8
3,157
🚨 On 9/14/26, #Cisco published a security advisory for CVE-2026-76461 – a critical SQL injection vuln. affecting Cisco AsyncOS Software for Cisco Secure Email Gateway. More in our blog: r-7.co/4AfiBgS
2
11
24
5,175
Rapid7 was named among the notable providers in the Forrester MDR Services Landscape, Q3 2026. Being included matters to us, but the more interesting story is in what Forrester says about the market itself. More in our blog: r-7.co/4h2FPhs
2
2,313
🚨 On 9/10/26, #GitLab published a critical patch release for GitLab Community Edition (CE) & Enterprise Edition (EE), addressing CVE-2026-85706. Exploitation could allow an unauth. user to read arbitrary files from an affected GitLab server. Read on: r-7.co/4xTVQNZ
3
9
21
4,875
Rapid7 Labs has identified a previously undocumented Linux toolkit – targeting, harvesting credentials from, and surveilling orgs across South Korea’s automotive and media industries with minimal detection. Dive into the full technical analysis here: r-7.co/3SRcFd9
21
50
5,280
🚨 On 9/1/26, #SonicWall disclosed 2 EITW vulns affecting SonicWall SMA1000 appliances. CVE-2026-83548 & CVE-2026-83549 can be chained to achieve unauthenticated RCE on affected appliances. Find mitigation guidance and more in our blog: r-7.co/4AaMX4j
1
1
6
3,984
In Q2, Rapid7 researchers found that "no login required" flaws jumped 247% vs. last year. No weak password to blame – just missing authentication. Patching faster won’t save you, but prioritizing what’s reachable will. More in our Threat Landscape Report: r-7.co/3U3kixo
1
1
5
1,897
🚨 On 8/27/26, #PaperCut Software published an urgent security advisory, detailing active exploitation of a vuln affecting PaperCut NG & MF. PaperCut has confirmed customer incidents. More on CVE-2026-81578 and CVE-2026-82078 in our blog: r-7.co/46ysbxz
1
4
16
6,227
💳 Stolen identities fuel a thriving underground economy today. Rapid7 telemetry has identified 476 instances of compromised SSN records YTD (45% Exec Leadership). In a new blog from Rapid7 Labs, get to know the stolen identity economy: r-7.co/4wPg7mg
2
1
3
2,778
Rapid7 Labs uncovered a crypto scammer's entire working environment – shedding light on phishing panels, voice-dialing scripts, and counterfeit wallets in use by threat actors today. ▶️ Full explainer on YouTube: r-7.co/3SvoRjC 👉 Technical blog: r-7.co/4xban7K
2
5
18
3,879
🚨 On August 19, 2026, a security advisory was published for CVE-2026-19490, a critical authentication bypass vulnerability affecting #Citrix NetScaler ADC and #NetScaler Gateway. Stay up to date with the Rapid7 blog: r-7.co/4xkBooY
2
19
39
5,562
🖱️ 62% of exploited vulnerabilities this quarter needed no click or interaction from the user at all – up 24% from Q1 alone. You can’t patch everything. So what do you fix first? Download Rapid7's latest Quarterly Threat Report for more: r-7.co/3U3kixo
4
2,230
Rapid7 Labs recently uncovered a crypto scammer's working environment via a misconfigured web directory, exposing raw phone-number datasets, phishing panels, voice-dialing scripts, counterfeit wallet builds, and more. 👉 Full technical analysis here: r-7.co/4xban7K
2
8
42
39,919
🎤👾 This week on Hacktics and Telemetry, @fulmetalpackets & @_CryptoCat are joined by @stephenfewer to take you behind the scenes of Pwn2Own – the world's premier 0-day competition. ▶️ Video on YouTube: r-7.co/3TUAot6 🎧 Audio on Spotify: r-7.co/4cBHMQo
1
10
3,516
🚀 97% of SOCs say AI is working in the SOC. Execs are 1.6x more skeptical. So what's driving that gap in confidence? 500 global security professionals independently weigh in. 🧵 Big beats in our blog: r-7.co/4wXzs5V 👉 Download the report: r-7.co/4wopKsc
3
2,272
🚨 In July 2026, while conducting a 0-day research project against Microsoft #SharePoint, Rapid7 Labs discovered 2 new vulns that, when chained together, achieve unauthenticated RCE against a SharePoint server.
4
48
211
13,048
Today, both Rapid7 and #Microsoft are disclosing the 2nd vuln in this chain – CVE-2026-63520 – alongside all-new analysis & PoC for CVE-2026-55040, which was disclosed last month. 👉 Aug. disclosure: r-7.co/4wVaO5T 👉 Jul. analysis & PoC: r-7.co/4xEF4C5
1
2
12
3,245