SecPod Labs
Security Research
In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

CVE Research
iLeakage: Uncovering Browser-Based Speculative Execution Attacks in Apple Safari For Email and Password Theft
An academic research team has developed a novel speculative side-channel attack, which they’ve named “iLeakage.” This attack highlights a security risk targeting vulnerabilities in recent Apple Inc. devices, enabling the extraction of sensitive data from Apple’s Safari web browser.

CVE Research
Know the Impact of Vulnerabilities and Types of Threats on your Linux Systems
Linux is the backbone of most modern business organizations and a massive network. Amazon, the largest cloud provider globally, runs its EC2 cloud computing platform on Linux. Currently, the Linux kernel employs 27.8 million lines of code, updated every year. Several new bugs or vulnerabilities appe...
Ransomware Types That Target Businesses
CVE Research
Ransomware Types That Target Businesses
Although the ransomware types took a nosedive in terms of the victim count years ago, it’s still alive and kicking. By using a vulnerability management tool, we can remediate these. It used to home in on any computers indiscriminately, but at some point, the malicious actors realized they could sque...

CVE Research
Apple Critical Security Updates April 2021
Apple released security updates for multiple products. The exploitation of some of these security flaws will allow an attacker to bypass many core Apple security mechanisms, crash the application, potentially control affected systems, and putting Mac users at great risk. A vulnerability management s...

CVE Research
Apple Critical Security Updates December 2020
Apple released security updates for multiple products. The exploitation of some of these security flaws will allow an attacker to crash the application or potentially control affected systems. However, a patch management solution can stop the exploitation.

CVE Research
Critical Zero-Day in HPE Systems Insight Manager Revealed
Hewlett Packard Enterprise recently revealed a security flaw in its Systems Insight Manager software (Vulnerability in HPE Systems). This zero-day bug resides in the recent versions of the server software and is reportedly unpatched. Servers running the affected software are liable to Remote Code Ex...



