PACT 2026: A Stronger, Simpler, More Profitable Path for Rapid7 Partners
2026-03-18T07:23:44Z•34b2828a0b3610e2dce86d266a2a69d3f2b7993c0675bf8871d7683762ef7273
APTCVE-2025-71243LeakIXMDRRC4-packerSPIPSPIP-Saisiesdata-exfiltrationdetectionevasionexploit-moduleiran-linkedlateral-movementmalwaremetasploitmicrosoft-teamsphishingpodcastquick-assistremote-accesssocial-engineeringtelemetrythreat-intelligence
What happened
This Rapid7 collection covers multiple updates: (1) Rapid7 MDR is tracking an uptick in Microsoft Teams-based phishing where attackers spoof internal IT to coerce users into launching Quick Assist, granting remote access for malware deployment, data exfiltration, or lateral movement. (2) Metasploit Framework received new modules including LeakIX discovery, a Linux x64 RC4 payload packer (evasion), and an unauthenticated RCE module for SPIP Saisies (publicly referenced as CVE-2025-71243), increasing exploitability of that issue. (3) Rapid7 published broader detection/enrichment coverage forIran
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- rapid7_blog
- Record identifier
- 34b2828a0b3610e2dce86d266a2a69d3f2b7993c0675bf8871d7683762ef7273
- Enrichment time
- 2026-03-18T07:23:44Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.