SecPod

Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Open The Finale of the Eternal Search for the Best Vulnerability Assessment Solution is Nearing!
The Finale of the Eternal Search for the Best Vulnerability Assessment Solution is Nearing!

CVE Research

The Finale of the Eternal Search for the Best Vulnerability Assessment Solution is Nearing!

Vulnerability management solution is usually the most painstaking process for an IT/security team. The teams struggle to run full vulnerability scans in time and create comprehensive risk reports. Throw in a dozen scanners and patching solutions. It’s now full-blown chaos and drama. Top management f...

Apr 30, 2026 • 2 min read

Open ALERT: The Return of the WIZard in Exim Mail Server (CVE-2019-10149)
ALERT: The Return of the WIZard in Exim Mail Server (CVE-2019-10149)

CVE Research

ALERT: The Return of the WIZard in Exim Mail Server (CVE-2019-10149)

Apr 30, 2026 • 3 min read

Open ALERT:Google fixes four critical Chrome vulnerabilities
ALERT:Google fixes four critical  Chrome vulnerabilities

CVE Research

ALERT:Google fixes four critical Chrome vulnerabilities

Apr 30, 2026 • 2 min read

Open Adobe Critical Security Updates March 2020
Adobe Critical Security Updates March 2020

CVE Research

Adobe Critical Security Updates March 2020

Apr 30, 2026 • 3 min read

Open Apache Struts Struck by Zero-Day Attack
Apache Struts Struck by Zero-Day Attack

CVE Research

Apache Struts Struck by Zero-Day Attack

The Model-View-Framework Apache Struts2, an open source and free framework for simplifying the creation of web applications in Java recently patched to mitigate a zero day vulnerability using a patch management tool.

Apr 30, 2026 • 2 min read

Open DarkIRC Botnet: Infecting Thousands of Unpatched Oracle WebLogic Servers
DarkIRC Botnet: Infecting Thousands of Unpatched Oracle WebLogic Servers

CVE Research

DarkIRC Botnet: Infecting Thousands of Unpatched Oracle WebLogic Servers

DarkIRC is a multi-featured botnet. The bot comes with a variety of capabilities like keylogging, the ability to download files and execute commands on the infected server, steal credentials, spread to other devices via MSSQL and RDP (brute force), SMB, or USB, as well as perform several versions of...

Apr 30, 2026 • 3 min read

Open Secret Backdoor to Zyxel Firewall and AP Controllers Could Allow Administrative Access
Secret Backdoor to Zyxel Firewall and AP Controllers Could Allow Administrative Access

CVE Research

Secret Backdoor to Zyxel Firewall and AP Controllers Could Allow Administrative Access

Niels Teusink of Dutch cybersecurity firm EYE has recently discovered a secret backdoor to Zyxel devices. More than 100,000 Zyxel Firewall and AP Controllers of version 4.60 patch 0 are affected by this vulnerability (CVE-2020-29583). A vulnerability management solution can be helpful here. It is du...

Apr 30, 2026 • 2 min read

Open Beware Critical Wormable SMBv3 Flaw in Windows Systems.
Beware Critical Wormable SMBv3 Flaw in Windows Systems.

CVE Research

Beware Critical Wormable SMBv3 Flaw in Windows Systems.

Microsoft disclosed details of a critical wormable flaw in SMBv3. This flaw can be used by attackers to deliver wormable malware to targets that could spread across the network and infect other machines within no time. Server Message Block(SMB) is an important network protocol that is used for shari...

Apr 30, 2026 • 4 min read

Open Overcoming the 5 Roadblocks of System Vulnerability Management
Overcoming the 5 Roadblocks of System Vulnerability Management

CVE Research

Overcoming the 5 Roadblocks of System Vulnerability Management

System vulnerability management is vital in maintaining the security posture of your organization. As your organization grows with new technology and innovation, a vulnerability management solution needs to evolve to protect you from a myriad of cyber-attacks.

Apr 30, 2026 • 4 min read