The news
Rapid7 (RPD), the Boston-based security software company, launched Rapid7 Intelligence on October 2, 2026. The company describes it as a unified engine that combines its threat intelligence, vulnerability research and the work of Rapid7 Labs, its research group, to help customers anticipate attacks rather than only react to them.
Threat intelligence is information about who is attacking, how, and with what tools. Rapid7 says the new product tracks attacker tactics and automation in real time and turns that research into what it calls AI-powered action. In the company's description, the findings feed directly into Rapid7's own products, its managed detection and response (MDR) service, in which Rapid7 staff watch customer networks, and its exposure management tools, which rank a company's weak points.
The pitch is about speed. Rapid7 argues that static intelligence feeds sit in dashboards without changing defenses, while attackers use AI to shrink the time between a flaw's disclosure and its exploitation. Christiaan Beek, vice president of Rapid7 Intelligence, said static threat intelligence is "just sitting in standard dashboards doing what it's always done," giving organizations a false sense of security.
The release points to Rapid7's research track record. It cites 8,539 critical vulnerabilities tracked in the second quarter alone, a figure linked to the company's quarterly threat landscape report, and names malware families its researchers follow, including BPFDoor variants. Rapid7 also highlights open-source work such as Metasploit, the widely used penetration testing tool it maintains, and says it has more than 11,500 customers.
Mel Stone, Rapid7's chief global services officer, framed the launch around managed services, arguing in the release that traditional defensive tools cannot keep up with today's volume of security data. The announcement did not include pricing, a release schedule or whether Rapid7 Intelligence is part of current subscriptions or sold separately.
The numbers
- Launch date
- October 2, 2026
- Critical vulnerabilities tracked in one Q2 (Rapid7 figure)
- 8,539
- Customers (company figure)
- 11,500+
Why CEOs should care
For security buyers consolidating vendors, the first question is cost. Rapid7 has not said whether Rapid7 Intelligence is included for existing customers. If you already pay for a separate threat intelligence feed, ask Rapid7 for a written comparison of coverage and price, and whether the new product could replace the other subscription rather than add to it.
CISOs should test the core claim: that research reaches their defenses faster. Ask for examples of detections that were pushed to customers after a new campaign was found, and how long it took. Check whether the intelligence works with tools from other vendors or only inside Rapid7's platform, since tighter integration can mean deeper lock-in.
CFOs and boards should treat this as part of a wider trend in which large security vendors bundle intelligence, detection and services. Bundles can cut costs and simplify contracts, but they also concentrate risk with a single supplier. Renewal talks are the moment to ask how pricing will change as more features move into the platform.
The bigger picture
Threat intelligence used to be sold mainly as standalone feeds and reports. Platform vendors are increasingly folding it into their own detection and response products, and Rapid7 already offered an Intelligence Hub inside its Command Platform. The new branding puts intelligence at the center of Rapid7's pitch as it competes for customers looking to buy fewer, broader tools.
What’s next
Watch for Rapid7 to publish pricing and packaging details, and for any mention of the product's effect on revenue in its next quarterly results.
What “Fact-checked” means
Fact-checking means testing a story’s facts against the evidence before it is published. This story went through at least two separate checks before this version was published.
- What we checked
- Its names, figures, dates, job titles, quotes and who said what were checked against the story’s sources, including its main source where it could be opened. The headline was checked for accuracy and overstatement.
- How
- A first check reviewed the whole story. If it passed, a second, skeptical check went back to the sources to look for mistakes in the most important facts. If a check flagged the story, it was edited to fix the problems found, and a separate re-check then reviewed the whole story again.
- Who
- The checks are made by our newsroom, as steps kept separate from the writing, under rules set by our editor, Hussein Mukhtar. A story the checks still flag is held for the editor, who decides whether it is fixed, published or dropped.
- If something is wrong
- “Fact-checked” does not mean error-free. If a material error is found after publication, we correct the story and add a note saying what changed. Report an error





