Here's what you missed on...the Rapid7 Rundown!

Here's what you missed on...the Rapid7 Rundown!

Welcome back! Find all the latest cybersecurity updates to accelerate your success in the SOC.

Rapid7 Adds Extended Ecosystem Support of Third-Party Detections to Managed Detection and Response

There's a new addition to Rapid7's MDR ?? third-party detections for attack surface monitoring. Rapid7’s SOC analysts can now better serve customers with:

?? Enhanced Visibility: With coverage for third-party event sources, the need to manually normalize information across a customer’s environment is eliminated, saving time and giving teams confidence that their full attack surface is covered.

?? Reduced Noise: Detect threats across all phases of the MITRE ATT&CK framework and modern threat landscape - without more noise.

?? Optimized Response: With broader telemetry and correlation across endpoint, network, identity and cloud, Rapid7’s incident response analysts can respond faster and more accurately to threats.

Discover Rapid7's MDR service and its Managed Threat Complete solution with extended ecosystem monitoring


Vector Command

?? Say hello to Rapid7's fully managed offensive security service.

Vector Command combines the external attack surface assessment capabilities of Rapid7’s recently launched Command Platform with continuous Red Teaming services by its internal experts to help customers identify and validate IT security posture weaknesses from an attacker’s perspective.

The Vector Command managed service proactively assesses the customer’s external attack surface — in the same way a threat actor would — to pinpoint weaknesses like previously unknown vulnerabilities, misconfigurations, or missing security controls. With our skilled Red Teamers emulating real-world attack scenarios, customers can validate exposures and defenses, monitor readiness, and build resiliency against future threats. Jeremiah Dewey , Senior Vice President, Service Delivery

Discover Vector Command


Proud To Be A Leader ??

Rapid7 was named a Leader in the IDC MarketScape: Worldwide SIEM for SMB and Enterprise for InsightIDR, our next-gen SIEM solution.

We want to thank our customers for their partnership, feedback, and trust, all of which continue to guide how we build and innovate toward our mission to deliver command of the attack surface and keep security teams ready for whatever comes next.

Learn what sets InsightIDR apart from other SIEMs


Quick Hits from Rapid7

Assessing Container Images Across Private Registries with InsightCloudSec ??

To ensure customers can continuously assess the security of their container images wherever they’re stored, InsightCloudSec now supports both “as-a-service” and self-hosted private registries.

The platform now automatically scans container images stored in private registries as uploaded or modified, providing real-time insights into potential risks.

5 Key Insights from the Gartner? Market Guide for Cloud-Native Application Protection Platforms (CNAPP) ??

As the cloud landscape evolves, organizations face the growing challenge of securing their cloud-native applications. The 2024 Gartner Market Guide for CNAPP provides insights into the latest trends and technologies reshaping how companies protect their digital assets.

Ransomware Demystified: Lynx & CyberVolk Ransomware Groups ??

Rapid7 Labs actively monitors new and upcoming threat groups, including the recently-emerged Lynx ransomware group. Identified in July 2024, the group has claimed more than 20 victims in various industry sectors to date.

CyberVolk, active since June 2024, initially positioned itself as a hacktivist organization, then started using ransomware as a retaliation tool. Rapid7 Labs compiled a report on the group's ransomware tactics, underlying motivations, and technical behaviors.

What's popping up on the security landscape?

Rapid7's Emergent Threat Response (ETR) team covers CVEs in real time for the cybersecurity community, and Rapid7 customers can take immediate action with applicable documentation.

?? Here are some recent CVEs and threat activity to take note of:

  • CVE-2024-45195: Apache OFBiz Unauthenticated Remote Code Execution. Learn more
  • Multiple CVEs: Veeam Backup & Replication. Learn more
  • CVE-2024-40766: Critical Improper Access Control Vulnerability Affecting SonicWall Devices. Learn more
  • Multiple CVEs: High-Risk Vulnerabilities in Common Enterprise Technologies. Learn more
  • Multiple CVEs: Common Unix Printing System (CUPS). Learn more


See you next time!

Don't forget to subscribe to the Rapid7 Rundown! You can also keep up with the latest at Rapid7 here on LinkedIn, and Twitter/X.

Alexandre dos Santos Maria

Gerente Especialista de Governan?a GRC e Seguran?a da Informa??o | Ciberseguran?a | Gest?o de Riscos | Prote??o de Dados | Normatiza??o | Auditoria Interna | Complliance |

5 个月

Excellent, great news, thanks

Craig Adams

Chief Product Officer, Rapid7

5 个月

These are some incredible releases - and so many additional cool things coming soon!

要查看或添加评论,请登录

Rapid7的更多文章

社区洞察

其他会员也浏览了