SecPod Labs
Security Research
In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

CVE Research
The Rising Need of Unified Endpoint Security and Management
Endpoints are one of the most important assets of an enterprise. According to a study, 68 percent of IT admins said the frequency of attacks in endpoints had increased in 2019. More than half of respondents said their organizations are ineffective at surfacing threats because their endpoint security...
Patch Tuesday: Microsoft Security Bulletin Summary for March 2019
CVE Research
Patch Tuesday: Microsoft Security Bulletin Summary for March 2019
Microsoft Patch Tuesday March 2019 is back with its monthly set of security updates and brings with it 64 vulnerabilities. 17 of them are rated critical, 45 are rated important, 1 rated moderate and another rated low in severity using a vulnerability scanning tool. Also, 35 CVEs were reported for Wi...

CVE Research
Pulse Connect Secure Zero-Day Vulnerability Under Active Exploitation (CVE-2021-22893)
Pulse Secure released an advisory on April 19 about a Critical Zero-day Authentication Bypass vulnerability identified as CVE-2021-22893 in Pulse Connect Secure SSL VPN appliances. The vulnerability allows a remote attacker to bypass authentication and perform remote arbitrary file execution on the ...

CVE Research
OpenSSL Patches Two High Severity Crypto Vulnerabilities
Two high-severity vulnerabilities were recently revealed to be present in the popular cryptography library, OpenSSL. While one of the vulnerabilities can allow an attacker to bypass CA Certificate checks, the other could lead to a Denial of Service (DoS) condition. However, a vulnerability managemen...



