A Day With Your Vector Command Red Team Pod
2026-07-06T19:23:46Z•a25e5415c5e2d322e8947905ca569631a93b7a7cfdde22a951cec8f8c0de857d
AI in securityAudiobookshelfCVE-2025-25205DalfoxLiteLLMMetasploitNext.jsPeyara Remote MouseProject GlasswingPsExecRCESMB to MeterpreterSOC automationSQL injectionVector Commandcontinuous testingdeserializationexploitsmulti-agent AIred teamvulnerability standards
What happened
This collection of Rapid7 blog posts covers operational red teaming, active exploit tooling, and the impact of AI on offensive and defensive security. Key items: Vector Command describes a continuous five-operator red-team pod model; Rapid7 rolled multiple Metasploit updates (including an SMB-to-Meterpreter upgrade via PsExec, a Peyara Remote Mouse 1.0.1 unauthenticated RCE module, a loongarch64 exec payload, and several scanners/exploits such as Next.js middleware bypass, LiteLLM proxy SQLi, Dalfox deserialization RCE, and an Audiobookshelf unauthenticated API auth bypass tied to CVE-2025-252
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- rapid7_blog
- Record identifier
- a25e5415c5e2d322e8947905ca569631a93b7a7cfdde22a951cec8f8c0de857d
- Enrichment time
- 2026-07-06T19:23:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.