Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
CVE-2021-22681 & IOCONTROL: Detection and Defense for Rockwell Automation PLCs
Introduction The threat landscape for Operational Technology (OT) has shifted from disruptive defacements to destructive capability. The Ira...
Rapid7 Q1 2026 Platform Updates: Strengthening Vulnerability Prioritization and Automated Response
Rapid7 Q1 2026 Platform Updates: Strengthening Vulnerability Prioritization and Automated Response Introduction The Q1 2026 release from Rap...
Threat Actor Abuse of Elastic Cloud: Detecting Stolen Data Hubs
Threat Actor Abuse of Elastic Cloud: Detecting Stolen Data Hubs Introduction Recent research from Huntress has uncovered a concerning trend ...
PyPI Supply Chain Attack: Detecting TeamPCP Malicious Telnyx Packages
Introduction A new campaign by the threat actor known as TeamPCP has been identified targeting developers utilizing the Telnyx SDK on the Py...
Beyond Signal Sampling: Preparing for AI-Powered Full Environment MDR in 2026
Beyond Signal Sampling: Preparing for AI-Powered Full Environment MDR in 2026 In a recent episode of Rapid7’s Experts on Experts, CEO Corey ...
CVE-2025-59718: FortiGate SSO Login Bypass — Incident Response Findings and Detection Guide
CVE-2025-59718: FortiGate SSO Login Bypass — Incident Response Findings and Detection Guide Introduction In December 2025, Fortinet disclose...
Venom Stealer MaaS: Detecting and Blocking ClickFix Social Engineering Attacks
Introduction The commoditization of cybercrime continues to accelerate with the emergence of Venom Stealer, a new Malware-as-a-Service (MaaS...
AA26-097A: Iranian APT Targeting Rockwell Automation PLCs – Detection and Hardening
Introduction On April 7, 2026, CISA released advisory AA26-097A detailing active exploitation by Iranian-affiliated APT actors targeting U.S...
Rapid7 Exposure Command: Unifying Preemptive and Proactive Cloud Defense via ARMO Integration
Introduction For years, security operations centers (SOCs) and cloud security teams have battled a fragmented visibility gap. We excel at fi...