SecPod

Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Open Critical Security Vulnerabilities Discovered in JetBrains TeamCity: Urgent Action Required
Critical Security Vulnerabilities Discovered in JetBrains TeamCity: Urgent Action Required

CVE Research

Critical Security Vulnerabilities Discovered in JetBrains TeamCity: Urgent Action Required

Recent disclosures have revealed critical vulnerabilities in JetBrains TeamCity. Two vulnerabilities have been identified, namely: CVE-2024-27198 and CVE-2024-27199. It allows unauthenticated attackers to bypass authentication measures and gain unauthorized access to sensitive endpoints within the T...

Apr 28, 2026 • 3 min read

Open SolarWinds Fixes Five Potential RCE Vulnerabilities in its Access Rights Manager Solution
SolarWinds Fixes Five Potential RCE Vulnerabilities in its Access Rights Manager Solution

CVE Research

SolarWinds Fixes Five Potential RCE Vulnerabilities in its Access Rights Manager Solution

Five remote code execution (RCE) vulnerabilities, including three critical severity holes, have been addressed by SolarWinds in its Access Rights Manager (ARM) solution. Three vulnerabilities stand out among the five due to their ability to execute remote code without authentication. These vulnerabi...

Apr 28, 2026 • 2 min read

Open “Wanna Cry” and the art of not keeping the systems updated
“Wanna Cry” and the art of not keeping the systems updated

CVE Research

“Wanna Cry” and the art of not keeping the systems updated

There is a magic button that is going to save us all. Mathematical modeling, sandboxing, behavioral analysis, machine learning, EDR, what not button. Just click it. Auto Patching vulnerability is gone thing, who is going to sit and roll out those tedious little things. I have invested in magic butto...

Apr 28, 2026 • 2 min read

Open SanerNow Risk Prioritization vs CVSS-based Risk Prioritization
SanerNow Risk Prioritization vs CVSS-based Risk Prioritization

CVE Research

SanerNow Risk Prioritization vs CVSS-based Risk Prioritization

A mountain of vulnerabilities and no way of knowing the most critical ones. This is the story of every modern organization’s network, including yours probably. “But what about CVSS-based prioritization?” you might ask. While CVSS in cyber security is a popular method, vulnerability management tools ...

Apr 28, 2026 • 4 min read

Open Strategic Server Patch Management to Safeguard Your IT Landscape
Strategic Server Patch Management to Safeguard Your IT Landscape

CVE Research

Strategic Server Patch Management to Safeguard Your IT Landscape

Consider this scenario: many vulnerabilities that don’t have a patch are present in the servers and get wildly exploited.  These vulnerabilities will act as an open door to hackers, inviting them to have complete control over organizational information. To prevent this situation, an organization sho...

Apr 28, 2026 • 4 min read

Open SanerNow’s Agentless Scanner for Endpoint Security
SanerNow’s Agentless Scanner for Endpoint Security

CVE Research

SanerNow’s Agentless Scanner for Endpoint Security

An agentless scanner can detect every vulnerability without leaving a trace. It can silently detect vulnerabilities without installing an agent in each device. The agentless scanner operates discreetly, gathers all the vulnerability information, and self-destructs itself.

Apr 28, 2026 • 4 min read

Open Unveiling Order from Chaos: Device Tagging’s Role in Streamlining Vulnerability Management
Unveiling Order from Chaos: Device Tagging’s Role in Streamlining Vulnerability Management

CVE Research

Unveiling Order from Chaos: Device Tagging’s Role in Streamlining Vulnerability Management

The sophistication of cyber-attacks isn’t waning. The rise in ransomware attacks is sound proof of that. Instead, it adds to the security agony of every organization across geography.

Apr 28, 2026 • 4 min read

Open OpenSSL Addresses Two High Severity Vulnerabilities. Patch Now!
OpenSSL Addresses Two High Severity Vulnerabilities. Patch Now!

CVE Research

OpenSSL Addresses Two High Severity Vulnerabilities. Patch Now!

On October 25, 2022, the OpenSSL team issued a major flaw alert to users. OpenSSL 3.0.7 was released on November 1, 2022, to fix two serious vulnerabilities, CVE-2022-3786 and CVE-2022-3602. These flaws initially given a critical rating before being lowered to high. OpenSSL is a widely used cryptogr...

Apr 28, 2026 • 5 min read

Open Risk Prioritization Strategies for Rapid Attack Surface Reduction
Risk Prioritization Strategies for Rapid Attack Surface Reduction

CVE Research

Risk Prioritization Strategies for Rapid Attack Surface Reduction

How many vulnerabilities do you have in your IT infrastructure right now? The odds are that the number could be thousands or even 10s of thousands and always rising too! And with software vendors releasing updates to their software almost daily, there’s always a constant chance for potential risk in...

Apr 28, 2026 • 4 min read