SecPod Labs
Security Research
In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

CVE Research
Cyber Risk Exposure: Protecting Your Digital Space
In July 2021, Kaseya, a software company, experience a cyberattack that affected up to 1,500 businesses worldwide. This ransomware attack disrupted operations, caused financial losses, and highlighted the critical importance of cyber risk exposure. But what exactly is cyber risk exposure, and why sh...

CVE Research
Story of Cyberattack: ProxyLogon
In this episode of “Story behind a cyberattack”, let’s talk about a cyberattack that shook the cybersecurity landscape in 2021. The attack that exposed the potential risks of unpatched systems and highlighted the important of cybersecurity practices. Approximately, 60,000 organizations have been com...

CVE Research
Google Chrome 126 Update Resolves Critical Security Vulnerabilities!
Google has released Chrome 126, which addresses several high-severity vulnerabilities, including a notable flaw demonstrated at the TyphoonPWN 2024 hacking competition. This update is essential for maintaining the security and integrity of the widely-used web browser.

CVE Research
Critical Vulnerabilities Found in VMware vCenter Server and Cloud Foundation
A recent surge of critical remote code execution (RCE) vulnerabilities has been discovered in VMware vCenter Server and Cloud Foundation products. These vulnerabilities can be triggered by remote attackers who craft and send specific network packets to the vCenter Server via the DCERPC protocol. Suc...

CVE Research
Adobe Critical Security Updates June 2024
In June 2024, Adobe released security updates addressing 13 critical vulnerabilities in software like Experience Manager, Adobe Commerce, Photoshop, etc. In total, 168 security flaws were patched using a patch manager. These vulnerabilities could lead to various issues, such as arbitrary code execut...

CVE Research
Control+Alt+Defeat Vulnerabilities in 5 mins
The fight against vulnerabilities and threats is constant. The real race is between cyber-attackers and organizations constantly trying to stay ahead. Attackers give their all to penetrate enterprises’ cyber defense while enterprises defend their IT infrastructure.



