Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

A Deep Dive into NIST Patch Management

CVE Research

A Deep Dive into NIST Patch Management

Patch Management is one of the most critical components of the vulnerability management and cyberattack prevention process. It streamlines, regulates, and methodizes the application of patches for a smoother process. Following NIST patch management guidelines will strengthen your IT security and zer...

May 09, 2024 • 4 min read

Top Vulnerability Management Tools in 2024

CVE Research

Top Vulnerability Management Tools in 2024

What is modern IT Security without a vulnerability management tool? Severely limited, crippled, and not contemporary. The key goal of vulnerability management tools is to reduce your attack surface. They are critical weapons for IT and security teams to combat and prevent cyberattacks. From scanning...

Apr 24, 2024 • 4 min read

Patch Management Schedule for a Cyberattack-Free 2024

CVE Research

Patch Management Schedule for a Cyberattack-Free 2024

What is the average time for to apply a patch? The answer might surprise you, but not in a good way. Research suggests the average time to apply a patch is 102 days!! With the number of vulnerabilities reaching 40,000+ in a year, the chance of you missing out on a new patch is high. A patch manageme...

Apr 15, 2024 • 5 min read

Top Exposure Management Solutions for Enterprises in 2024!

CVE Research

Top Exposure Management Solutions for Enterprises in 2024!

In a world where cyberattacks are evolving faster than humans are able to detect and respond to threats, dealing with these attacks and finding effective tools to do so is crucial. Vulnerability management tools that help us safeguard our IT infrastructure are a necessity.

Apr 10, 2024 • 4 min read

Microsoft’s April 2024 Patch Tuesday: A Record-Breaking Month for Security Fixes

CVE Research

Microsoft’s April 2024 Patch Tuesday: A Record-Breaking Month for Security Fixes

Microsoft’s April 2024 Patch Tuesday wasn’t your average update day. While a record number of vulnerabilities were addressed (149), a unique aspect emerged – three critical vulnerabilities resided within a single product: Microsoft Defender for IoT. This blog post dives into these critical defenders...

Apr 09, 2024 • 4 min read

Insights into Cybersecurity Trends: Staying Ahead in a Changing Landscape

CVE Research

Insights into Cybersecurity Trends: Staying Ahead in a Changing Landscape

The world of cybersecurity is like a wild jungle – always changing and sometimes dangerous! Hackers and cybercriminals are always searching for new ways to exploit vulnerabilities and access our sensitive information. Staying ahead in this dynamic landscape requires understanding the latest threats ...

Apr 03, 2024 • 4 min read

Is Vulnerability Mitigation Just Patching? Or Patching and Beyond

CVE Research

Is Vulnerability Mitigation Just Patching? Or Patching and Beyond

The biggest reason for cyberattacks has been vulnerabilities. However, the trend has slowly changed, with threat actors using different methods and security risks to enter your network. Research suggests that 31% of cyberattacks were due to security risks such as misconfigurations, posture anomalies...

Mar 27, 2024 • 5 min read

Fortinet Fixes Actively Exploited FORTICLIENT EMS Flaw Allowing Unauthorised Code Execution

CVE Research

Fortinet Fixes Actively Exploited FORTICLIENT EMS Flaw Allowing Unauthorised Code Execution

Fortinet has issued an advisory warning about a new critical vulnerability in Fortinet’s FortiClient Enterprise Management Server (EMS) software. This flaw, identified as CVE-2023-48788, has been assigned a severity score of 9.3 on the CVSS scale, underlining its potential for serious impact. Horizo...

Mar 21, 2024 • 3 min read

What are Security Controls? Everything You Need to Know

CVE Research

What are Security Controls? Everything You Need to Know

What were the biggest culprits and causes of cyberattacks in the past few years? CVE or software vulnerabilities are the usual suspects, but other security risks being exploited are on the rise and vulnerability management tools are struggling to keep up. It is a trend you must be observing too. The...

Mar 20, 2024 • 4 min read