SecPod

Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Featured Article

Breaking Down the FortiClient Breach: CVE-2026-35616 and the Rise of EKZ Infostealer

CVE Research

Breaking Down the FortiClient Breach: CVE-2026-35616 and the Rise of EKZ Infostealer

May 29, 2026

Complete guide to CVE-2026-41940

CVE Research

CVE-2026-41940: The Complete Guide to the cPanel & WHM Authentication Bypass, Attack Chain, Detection, and Remediation

Jun 03, 2026

CVE-2026-41940_Mr_Rot13

CVE Research

CVE-2026-41940 - Critical cPanel Vulnerability Exploited in Mr_Rot13 Backdoor campaign

Jun 03, 2026

CVE-2026-41940_Real world incidents

CVE Research

CVE-2026-41940 Attacks, Examples, and Real-World Incidents

Jun 03, 2026

Showboat Emerges as New Linux Threat in Middle East Cyber Attacks

CVE Research

Showboat Emerges as New Linux Threat in Middle East Cyber Attacks

May 24, 2026

Deep Dive into FIRESTARTER: Persistent Backdoor on Cisco ASA & Firepower Devices

CVE Research

Deep Dive into FIRESTARTER: Persistent Backdoor on Cisco ASA & Firepower Devices

Modern cyber-espionage campaigns are increasingly shifting away from loud exploitation techniques and toward stealth-focused, persistence-driven operations that abuse trusted infrastructure. Rather than relying on chains of zero-day vulnerabilities or commodity malware, advanced threat actors are no...

Apr 27, 2026 • 6 min read

Prevention in the Age of AI Vulnerability Discovery

CVE Research

Prevention in the Age of AI Vulnerability Discovery

Anthropic’s Claude Mythos Preview (Project Glasswing) has pushed a new question into the center of security discussions. Anthropic says Mythos has already identified thousands of zero-day vulnerabilities across critical infrastructure, and that in testing it was able to identify and exploit zero-day...

Apr 27, 2026 • 9 min read

Mirai Turns Unsupported D-Link Routers into DDoS Weapons Using CVE-2025-29635

CVE Research

Mirai Turns Unsupported D-Link Routers into DDoS Weapons Using CVE-2025-29635

Researchers have uncovered an active Mirai botnet campaign exploiting CVE-2025-29635, a command-injection vulnerability in legacy D-Link DIR-823X routers, to recruit internet-exposed devices into a distributed denial-of-service (DDoS) botnet. Attackers deploy a Mirai malware variant known as “tuxnok...

Apr 27, 2026 • 4 min read