PACT 2026: A Stronger, Simpler, More Profitable Path for Rapid7 Partners

2026-03-18T07:23:44Z34b2828a0b3610e2dce86d266a2a69d3f2b7993c0675bf8871d7683762ef7273
APTCVE-2025-71243LeakIXMDRRC4-packerSPIPSPIP-Saisiesdata-exfiltrationdetectionevasionexploit-moduleiran-linkedlateral-movementmalwaremetasploitmicrosoft-teamsphishingpodcastquick-assistremote-accesssocial-engineeringtelemetrythreat-intelligence

What happened

This Rapid7 collection covers multiple updates: (1) Rapid7 MDR is tracking an uptick in Microsoft Teams-based phishing where attackers spoof internal IT to coerce users into launching Quick Assist, granting remote access for malware deployment, data exfiltration, or lateral movement. (2) Metasploit Framework received new modules including LeakIX discovery, a Linux x64 RC4 payload packer (evasion), and an unauthenticated RCE module for SPIP Saisies (publicly referenced as CVE-2025-71243), increasing exploitability of that issue. (3) Rapid7 published broader detection/enrichment coverage forIran

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
rapid7_blog
Record identifier
34b2828a0b3610e2dce86d266a2a69d3f2b7993c0675bf8871d7683762ef7273
Enrichment time
2026-03-18T07:23:44Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.