Workflow
Rapid7 Access Brokers Report: New Research Reveals Depth of Compromise in Access Broker Deals, with 71% Offering Privileged Access
Rapid7Rapid7(US:RPD) Globenewswireยท2025-08-12 13:00

Core Insights - Rapid7's 2025 Access Brokers Report reveals that initial access to compromised networks is being sold for less than $1,000, highlighting the need for unified detection and response strategies to combat these cyber threats [1][2][3] Industry Analysis - The report indicates that initial access brokers (IABs) are not merely seeking quick entry into networks but are exploring and exploiting the networks they infiltrate, often providing buyers with admin privileges and multiple access types [3][4] - A significant 71.4% of access broker sales include not just a specific access vector but also a level of privilege, with nearly 10% of sales bundling multiple access vectors and/or privileges [8] Company Strategy - Rapid7 emphasizes the importance of operationalizing threat detection and exposure management together, rather than treating them in isolation, to effectively address the evolving tactics of cyber attackers [4][6] - The company has launched Incident Command, an AI-native SIEM that integrates prevention, detection, intelligence, and response into a single workflow, enhancing security teams' capabilities [5][6] Recommendations - Organizations are advised to enforce multi-factor authentication (MFA) on critical access points, invest in threat-informed detection and response platforms, and conduct regular red team exercises to identify vulnerabilities [9]