🚨 On August 27, 2026, #PaperCut Software published an urgent security advisory, detailing active exploitation of a vulnerability affecting PaperCut NG and PaperCut MF – print management platforms with sizable deployment footprints. PaperCut has confirmed customer incidents and is treating the issue as a security emergency. CVE-2026-81578 and CVE-2026-82078 represent the two vulnerabilities in the exploit chain. Stay up to date with our blog: https://r-7.co/46ysbxz
About us
Rapid7, Inc. (NASDAQ: RPD) is a global leader in AI-powered managed cybersecurity operations, trusted to advance organizations’ cyber resilience. Open and extensible, the Rapid7 Command Platform integrates security data, enriching it with AI, threat intelligence, and 25 years of expertise and innovation to reduce risk and disrupt attackers. As a recognized leader in preemptive managed detection and response (MDR), Rapid7 unifies exposure and detection to transform the cybersecurity operations of more than 11,500 customers worldwide.
- Website
-
https://r-7.co/3i5nlhP
External link for Rapid7
- Industry
- Computer and Network Security
- Company size
- 1,001-5,000 employees
- Headquarters
- Boston, Massachusetts
- Type
- Public Company
- Specialties
- Information Security, Vulnerability Management, Penetration Testing, Compromised User Detection, Mobile Risk Management, Enterprise Control Monitoring, Strategic Services, Security Programs, Application Testing, Automation, Analytics, Intrusion Detection, and Attack Surface Management
Products
Metasploit
Penetration Testing Tools
Test your organization's defenses with a free download of Metasploit, the world's most used pen testing tool. Get started today.
Locations
Employees at Rapid7
Updates
-
💳 Stolen identities fuel a thriving underground economy today. Since the beginning of 2026, Rapid7 telemetry has identified 476 instances of compromised SSN records – 45% of which belonged to Executive Leadership. In a new blog from Rapid7 Labs, get to know the operational mechanics of the stolen identity economy: https://r-7.co/4wPg7mg
-
-
In a research effort dubbed Project ASTERIX, Rapid7 Labs uncovered a crypto scammer's entire working environment – shedding light on phishing panels, voice-dialing scripts, and counterfeit wallets in use by threat actors today. ▶️ Watch the full explainer on YouTube: https://r-7.co/3SvoRjC 👉 Dive into the full technical blog here: https://r-7.co/4xban7K
-
🚨 On August 19, 2026, a security advisory was published for CVE-2026-19490, a critical authentication bypass vulnerability affecting #Citrix NetScaler ADC and #NetScaler Gateway. The vulnerability carries a CVSS v4.0 base score of 9.3 and can be exploited remotely by an unauthenticated attacker over the network without user interaction or elevated privileges. Stay up to date with the Rapid7 blog: https://r-7.co/4xkBooY
-
🖱️ 62% of exploited vulnerabilities this quarter needed no click or interaction from the user at all – up 24% from Q1 alone. You can’t patch everything. So what do you fix first? Rapid7's latest Quarterly Threat Landscape Report explores the trends that defined Q2 2026, offering actionable steps for your security program into Q3 (and beyond). Download the report now: https://r-7.co/3U3kixo
-
-
Rapid7 Labs recently uncovered a crypto scammer's working environment via a misconfigured web directory, exposing raw phone-number datasets, phishing panels, voice-dialing scripts, counterfeit wallet builds, and more. Our researchers reconstructed how the campaign selected targets, coordinated its phishing and vishing efforts, and built malware – all with a healthy dose of AI coding assistance. 👉 Dive into our full technical analysis here: https://r-7.co/4xban7K
-
-
🎤👾 This week on Hacktics and Telemetry, Douglas McKee and Jonah Burgess take you behind the scenes of Pwn2Own – the world's premier zero-day exploitation contest. Stephen Fewer joins your hosts, sharing his firsthand experience at the competition, breaking down exactly how AI is altering the vulnerability landscape, and diving into the details of his infamous Brother printer exploits. ▶️ Full conversation on YouTube: https://r-7.co/3TUAot6 🎧 Audio experience on Spotify: https://r-7.co/4cBHMQo
-
🚀 97% of security teams say AI is working in the SOC. Their executives are 1.6x more skeptical. That gap in confidence between the SOC and the board is the most important finding in our new Omdia research – and the one that most AI content ignores. So what's driving it? 500 global security professionals independently weigh in. 🧵 Find the big beats in our blog: https://r-7.co/4wXzs5V 👉 Or skip to downloading the report: https://r-7.co/4wopKsc
-
-
🚨 In July 2026, while conducting a 0-day research project against Microsoft #SharePoint, Rapid7 Labs discovered 2 new vulns that, when chained together, achieve unauthenticated RCE against a vulnerable SharePoint server. Today, both Rapid7 and #Microsoft are disclosing the second vulnerability in this chain – CVE-2026-63520 – alongside a technical analysis & PoC script for CVE-2026-55040, which the two parties disclosed last month. 👉 August 2026 disclosure for CVE-2026-63520: https://r-7.co/4wVaO5T 👉 Analysis and PoC for July's CVE-2026-55040: https://r-7.co/4xEF4C5 Interested in the AI tooling that Stephen Fewer leveraged throughout the research process? Join Stephen and Douglas McKee on Thursday, August 13 to walk through the full exploit chain, actionable next steps and more. Register here: https://r-7.co/4wNKzhv
-
-
...And checkmate. As we wrap up our time at Black Hat 2026, Rapid7 would like to thank everyone who stopped by the booth, caught us at a happy hour or speaker presentation, and challenged one of our chessmasters at the game of kings ♟️ Preemptive Security is about thinking moves ahead – we're already looking forward to next year!
-