SecPod

Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Open How Fast, Accurate, and Continuous are your Vulnerability Scans?
How Fast, Accurate, and Continuous are your Vulnerability Scans?

CVE Research

How Fast, Accurate, and Continuous are your Vulnerability Scans?

With time, cybercriminals have begun employing sophisticated mediums to unleash chaos and vulnerabilities digitally. Vulnerabilities are becoming the most common and significant cause of many cyberattacks today. Managing them and preventing vulnerability exploits have become the most critical tasks ...

Apr 30, 2026 • 6 min read

Open Microsoft Released Emergency Out-Of-Band Updates To Fix Windows Server Authentication Issues
Microsoft Released Emergency Out-Of-Band Updates To Fix Windows Server Authentication Issues

CVE Research

Microsoft Released Emergency Out-Of-Band Updates To Fix Windows Server Authentication Issues

After the November patch Tuesday, Microsoft released emergency Out-Of-Band update to address authentication failures related to Kerberos delegation scenarios impacting Domain Controllers (DC). Firstly, these authentication issues impact systems that are running Windows Server 2019 and lower versions...

Apr 30, 2026 • 2 min read

Open Atlassian Confluence Server and Data Center Zero Day Vulnerability Under Active Exploitation. Patch Now!
Atlassian Confluence Server and Data Center Zero Day Vulnerability Under Active Exploitation. Patch Now!

CVE Research

Atlassian Confluence Server and Data Center Zero Day Vulnerability Under Active Exploitation. Patch Now!

OGNL Injection Vulnerability was discovered in Atlassian Confluence Server and Data Center, and it is tracked with CVE-2022-26134. This Atlassian Zero-Day vulnerability is actively exploited in the wild. Confluence is a wiki-based collaboration platform that enables teams to interact and share infor...

Apr 30, 2026 • 3 min read

Open Microsoft January 2022 Patch Tuesday Addresses 97 Vulnerabilities Including Six Zero-Day
Microsoft January 2022 Patch Tuesday Addresses 97 Vulnerabilities Including Six Zero-Day

CVE Research

Microsoft January 2022 Patch Tuesday Addresses 97 Vulnerabilities Including Six Zero-Day

Microsoft’s January 2022 Patch Tuesday security patch includes a total of 97 vulnerabilities detected, including six zero-day with nine classified as Critical and then 88 as Important. Furthermore, the products covered in January’s security update include Microsoft Office, Microsoft Windows, Microso...

Apr 30, 2026 • 5 min read

Open StringBleed, SNMP Authentication Bypass
StringBleed, SNMP Authentication Bypass

CVE Research

StringBleed, SNMP Authentication Bypass

Apr 30, 2026 • 2 min read

Open Ransomware Cerber A Repeat Offender – Part 1
Ransomware Cerber A Repeat Offender – Part 1

CVE Research

Ransomware Cerber A Repeat Offender – Part 1

Cerber is pernicious ransomware and one of the top 3 ransomware in the world. Cerber has been growing exponentially since early march of 2016. The notorious ransomware is now in its 5th version as the developers of the ransomware have been continuously improving their code to avoid endpoint security...

Apr 30, 2026 • 4 min read

Open Uncovering critical vulnerabilities in real-time computer vision library, OpenCV
Uncovering critical vulnerabilities in real-time computer vision library, OpenCV

CVE Research

Uncovering critical vulnerabilities in real-time computer vision library, OpenCV

Apr 30, 2026 • 4 min read

Open Ransomware Cerber A Repeat Offender – Part 2
Ransomware Cerber A Repeat Offender – Part 2

CVE Research

Ransomware Cerber A Repeat Offender – Part 2

Let’s continue from where we left off last week, and will go through the behavior patterns of the next versions of the Cerber Ransomware.

Apr 30, 2026 • 4 min read

Open Xml eXternal Entity (XXE) Attack
Xml eXternal Entity (XXE) Attack

CVE Research

Xml eXternal Entity (XXE) Attack

XXE attack is an attack on an application that parses XML input from untrusted sources using an incorrectly configured XML parser. A Vulnerability Management Software can stop these attacks.

Apr 30, 2026 • 3 min read