SecPod

Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Open Three Takeaways from the National Security Agency’s Cybersecurity Advisory in October 2020
Three Takeaways from the National Security Agency’s Cybersecurity Advisory in October 2020

CVE Research

Three Takeaways from the National Security Agency’s Cybersecurity Advisory in October 2020

On October 20, 2020, the National Security Agency (NSA), a national-level intelligence agency of the United States Department of Defense, released an NSA cybersecurity advisory highlighting 25 vulnerabilities in commonly-used software that are currently under active exploitation. They released the a...

Apr 28, 2026 • 5 min read

Open Privilege Escalation Vulnerability in MySQL / MariaDB / PerconaDB databases ( CVE-2016-5616 / CVE-2016-6663 )
Privilege Escalation Vulnerability in MySQL / MariaDB / PerconaDB databases ( CVE-2016-5616 / CVE-2016-6663 )

CVE Research

Privilege Escalation Vulnerability in MySQL / MariaDB / PerconaDB databases ( CVE-2016-5616 / CVE-2016-6663 )

Privilege escalation is the method of exploiting a bug, design flaw, or configuration issue in an operating system or software application to gain access to resources that are having restrictions to use by other users. An independent researcher Dawid Golunski exposed a privilege escalation vulnerabi...

Apr 28, 2026 • 5 min read

Open Adobe Security Updates – August 2019
Adobe Security Updates – August 2019

CVE Research

Adobe Security Updates – August 2019

Apr 28, 2026 • 3 min read

Open BlueBorne Attack: Millions of Devices at Risk

BlueBorne Attack: Millions of Devices at Risk

CVE Research

BlueBorne Attack: Millions of Devices at Risk

Over 5.3 billion devices across Windows, Linux, ios, and Android are affected by a new attack vector called BlueBorne Attack. Unless traditional attacks, this attack vector spreads over the air via Bluetooth, and the hacker does not need to pair with each device. A good Vulnerability Management Tool...

Apr 28, 2026 • 2 min read

Open Fortinet Fixes Actively Exploited FortiOS SSL-VPN Flaw Allowing Remote Code Execution
Fortinet Fixes Actively Exploited FortiOS SSL-VPN Flaw Allowing Remote Code Execution

CVE Research

Fortinet Fixes Actively Exploited FortiOS SSL-VPN Flaw Allowing Remote Code Execution

Apr 28, 2026 • 2 min read

Open Updated: Microsoft September Patch Tuesday Addresses 63 Security Vulnerabilities, Including Two Zero-day!
Updated: Microsoft September Patch Tuesday Addresses 63 Security Vulnerabilities, Including Two Zero-day!

CVE Research

Updated: Microsoft September Patch Tuesday Addresses 63 Security Vulnerabilities, Including Two Zero-day!

Microsoft released its monthly (September’s) security update, Patch Tuesday, disclosing 63 vulnerabilities across the company’s hardware and software line. Microsoft September 2022 Patch Tuesday security update is observed to have a sharp decline from last month’s number of issues disclosed by Micro...

Apr 28, 2026 • 5 min read

Open Microsoft Security Bulletin Summary for March 2014
Microsoft Security Bulletin Summary for March 2014

CVE Research

Microsoft Security Bulletin Summary for March 2014

Apr 28, 2026 • 2 min read

Open Samba CVE-2017-7494 Remote Code Execution Vulnerability
Samba CVE-2017-7494 Remote Code Execution Vulnerability

CVE Research

Samba CVE-2017-7494 Remote Code Execution Vulnerability

Apr 28, 2026 • 4 min read

Open EternalRocks – The New and More Sophisticated ‘Doomsday’ Worm
EternalRocks – The New and More Sophisticated ‘Doomsday’ Worm

CVE Research

EternalRocks – The New and More Sophisticated ‘Doomsday’ Worm

The Blackhats have created a new strain of malware that targets the same vulnerability as the WannaCry ransomware from the first week of May. However, these targeted vulnerabilities can be patched using auto patching.

Apr 28, 2026 • 4 min read