SecPod

Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Open Bugs Caught in the FortiWeb: Active Attacks Target FortiWeb Zero-Days
Bugs Caught in the FortiWeb: Active Attacks Target FortiWeb Zero-Days

CVE Research

Bugs Caught in the FortiWeb: Active Attacks Target FortiWeb Zero-Days

Fortinet has recently addressed two actively exploited zero-days in its FortiWeb web application firewall (WAF). These flaws, a command injection vulnerability (CVE-2025-58034) and a path traversal vulnerability (CVE-2025-64446), could allow attackers to execute unauthorized code and gain administra...

Apr 28, 2026 • 3 min read

Open Critical Palo Alto Firewall Bug Allows Remote Reboot Through Packet Injection
Critical Palo Alto Firewall Bug Allows Remote Reboot Through Packet Injection

CVE Research

Critical Palo Alto Firewall Bug Allows Remote Reboot Through Packet Injection

A critical denial-of-service vulnerability in Palo Alto Networks PAN-OS allows unauthenticated attackers to remotely reboot firewalls by sending specially crafted packets through the data plane. Security researchers warn that repeated exploitation can push affected devices into maintenance mode, eff...

Apr 28, 2026 • 3 min read

Open Zero-Day Vulnerability: How Dangerous Are They?
Zero-Day Vulnerability: How Dangerous Are They?

CVE Research

Zero-Day Vulnerability: How Dangerous Are They?

Zero-day vulnerabilities sit at the center of many high-profile cyberattacks. Security teams race to defend their environments, while attackers exploit these flaws before a patch exists. The result is a threat that often hits without warning and spreads faster than defenders can respond.

Apr 28, 2026 • 5 min read

Open SAP Urges Immediate Updates as CVE-2025-42887 Enables Full System Compromise
SAP Urges Immediate Updates as CVE-2025-42887 Enables Full System Compromise

CVE Research

SAP Urges Immediate Updates as CVE-2025-42887 Enables Full System Compromise

A critical security vulnerability, tracked as CVE-2025-42887, has been identified in SAP systems, prompting an urgent need for organizations to apply the latest patches. With a near-maximum severity score of 9.9, the flaw poses a significant risk as it could allow attackers to gain full control over...

Apr 28, 2026 • 3 min read

Open Archive Terror: Dissecting the WinRAR CVE-2025-6218 Exploit & APT-C-08’s Stealth Move
Archive Terror: Dissecting the WinRAR CVE-2025-6218 Exploit & APT-C-08’s Stealth Move

CVE Research

Archive Terror: Dissecting the WinRAR CVE-2025-6218 Exploit & APT-C-08’s Stealth Move

A targeted cyber-espionage campaign attributed to the threat group APT-C-08 is actively exploiting a high severity directory traversal vulnerability, CVE-2025-6218, in older versions of WinRAR. The campaign focuses on government organizations in South Asia, using phishing emails with malicious RAR a...

Apr 28, 2026 • 5 min read

Open FortiWeb at Risk: Unauthenticated Attackers Gaining Full WAF Control via Admin Creation
FortiWeb at Risk: Unauthenticated Attackers Gaining Full WAF Control via Admin Creation

CVE Research

FortiWeb at Risk: Unauthenticated Attackers Gaining Full WAF Control via Admin Creation

A critical authentication bypass vulnerability in Fortinet’s FortiWeb web application firewalls (WAF), identified as CVE-2025-64446 with a CVSS score of 9.8, is being actively and indiscriminately exploited in the wild. The flaw allows unauthenticated attackers to execute administrative commands and...

Apr 28, 2026 • 5 min read

Open RondoDox Botnet Expansion: Threat Actors Weaponize Critical XWiki Vulnerability
RondoDox Botnet Expansion: Threat Actors Weaponize Critical XWiki Vulnerability

CVE Research

RondoDox Botnet Expansion: Threat Actors Weaponize Critical XWiki Vulnerability

The discovery of widespread exploitation of a critical XWiki vulnerability CVE-2025-24893 reveals a severe threat to organizations running unpatched instances. Active threat activity shows that attackers—most notably the RondoDox botnet—are abusing this flaw to execute arbitrary code, compromise ser...

Apr 28, 2026 • 4 min read

Open Severe Dell Data Lakehouse Security Bug Enables Remote Privilege Escalation
Severe Dell Data Lakehouse Security Bug Enables Remote Privilege Escalation

CVE Research

Severe Dell Data Lakehouse Security Bug Enables Remote Privilege Escalation

A critical vulnerability, tracked as CVE-2025-46608, has been disclosed in the Dell Data Lakehouse platform, enabling remote attackers to escalate privileges within affected environments. Successful exploitation could allow adversaries to gain elevated access and compromise both data and system inte...

Apr 28, 2026 • 3 min read

Open Beyond CVSS: Using MITRE ATT&CK for smarter prioritization
Beyond CVSS: Using MITRE ATT&CK for smarter prioritization

CVE Research

Beyond CVSS: Using MITRE ATT&CK for smarter prioritization

Cloud teams face more findings than available hours. The gap is not detection, it is deciding what deserves action now. A decision-first approach ranks cloud risks using clear outcome levels that turn scattered alerts into a plan shared by operators and leadership. Saner Cloud Security Risk Prioriti...

Apr 28, 2026 • 6 min read