SecPod

Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Open Microsoft February 2026 Patch Tuesday: Six Zero-Days, 58 flaws Patched Amid Growing Exploit Activity
Microsoft Patch Tuesday 2026

CVE Research

Microsoft February 2026 Patch Tuesday: Six Zero-Days, 58 flaws Patched Amid Growing Exploit Activity

The second Tuesday of the month has arrived, bringing another significant wave of Microsoft security updates. In February 2026, Microsoft issued patches for 58 vulnerabilities, including six actively exploited zero-day flaws and five rated Critical.

Apr 28, 2026 • 6 min read

Open Fancy Bear: Russia-Linked APT Exploits Microsoft Office Zero-Day
Fancy Bear: Russia-Linked APT Exploits Microsoft Office Zero-Day

CVE Research

Fancy Bear: Russia-Linked APT Exploits Microsoft Office Zero-Day

A targeted cyber-espionage campaign conducted by the Russia-linked advanced persistent threat (APT) group Fancy Bear (APT28) has been observed exploiting a recently patched Microsoft Office vulnerability to compromise government, diplomatic, and defense-aligned organizations across Eastern Europe an...

Apr 28, 2026 • 4 min read

Open Deep Dive: Inside the Warlock Ransomware Breach of SmarterTools
Deep Dive: Inside the Warlock Ransomware Breach of SmarterTools

CVE Research

Deep Dive: Inside the Warlock Ransomware Breach of SmarterTools

In a significant security incident, SmarterTools, the developer of the popular SmarterMail collaboration platform, fell victim to a ransomware attack orchestrated by the Warlock ransomware group. The breach was made possible by a critical vulnerability in SmarterTools’ own software, specifically an ...

Apr 28, 2026 • 5 min read

Open Microsoft patches actively exploited Office zero-day vulnerability
Microsoft patches actively exploited Office zero-day vulnerability

CVE Research

Microsoft patches actively exploited Office zero-day vulnerability

In a swift response to escalating cyber threats, Microsoft has issued an emergency security update to remediate a high-severity zero-day vulnerability affecting several versions of Microsoft Office. Tracked as CVE-2026-21509, this security feature bypass flaw impacts Microsoft Office 2016, 2019, LTS...

Apr 28, 2026 • 4 min read

Open SolarWinds Implements Security Updates to Address Critical Web Help Desk Vulnerabilities
SolarWinds Implements Security Updates to Address Critical Web Help Desk Vulnerabilities

CVE Research

SolarWinds Implements Security Updates to Address Critical Web Help Desk Vulnerabilities

SolarWinds has released important security updates to address several critical vulnerabilities impacting its Web Help Desk (WHD) product. These issues include remote code execution (RCE) and authentication bypass flaws that put organizations at significant risk. Given WHD’s extensive use across ente...

Apr 28, 2026 • 3 min read

Open Critical GNU InetUtils Telnetd Vulnerability Allows Authentication Bypass and Root Access
Critical GNU InetUtils Telnetd Vulnerability Allows Authentication Bypass and Root Access

CVE Research

Critical GNU InetUtils Telnetd Vulnerability Allows Authentication Bypass and Root Access

The discovery of CVE-2026-24061 exposes a long-standing critical weakness in the GNU InetUtils telnet daemon (telnetd). Exploitation of this vulnerability enables remote authentication bypass and full root compromise, putting legacy and misconfigured systems at severe risk. The flaw remained undetec...

Apr 28, 2026 • 2 min read

Open Cisco Unified CM and Webex Security Alert: Active Zero-Day CVE-2026-20045 Fixed
Cisco Unified CM and Webex Security Alert: Active Zero-Day CVE-2026-20045 Fixed

CVE Research

Cisco Unified CM and Webex Security Alert: Active Zero-Day CVE-2026-20045 Fixed

Cisco has recently issued security updates to fix a critical vulnerability impacting several Unified Communications Manager (CM) products and Webex Calling Dedicated Instance. Tracked as CVE-2026-20045, the flaw has been actively exploited as a zero-day in real-world attacks, creating a serious risk...

Apr 28, 2026 • 4 min read

Open Active Exploitation Alert: Critical RCE Vulnerability in HPE OneView
Active Exploitation Alert: Critical RCE Vulnerability in HPE OneView

CVE Research

Active Exploitation Alert: Critical RCE Vulnerability in HPE OneView

The cybersecurity landscape is ever-evolving, and recent reports indicate that a previously patched vulnerability in HPE OneView is now being actively exploited in the wild. This Remote Code Execution (RCE) vulnerability, identified as CVE-2025-37164, poses a significant risk to organizations utiliz...

Apr 28, 2026 • 3 min read

Open Deploying VSOCKpuppet: Unmasking how Chinese Threat Actors Exploited ESXi Zero-Days Before Disclosure
Deploying VSOCKpuppet: Unmasking how Chinese Threat Actors Exploited ESXi Zero-Days Before Disclosure

CVE Research

Deploying VSOCKpuppet: Unmasking how Chinese Threat Actors Exploited ESXi Zero-Days Before Disclosure

Network virtualization infrastructure continues to be a high-value target for well-resourced threat actors. Recent analysis has revealed a sophisticated intrusion campaign in which Chinese-speaking attackers leveraged undeclared zero-day vulnerabilities in VMware ESXi hypervisor environments, possib...

Apr 28, 2026 • 5 min read