SecPod Labs
Security Research
In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

CVE Research
Guardians of Cybersecurity: Exploring the Leading Vulnerability Assessment Solutions
Cybersecurity has never been more crucial today. With threats evolving constantly, it’s essential for businesses to stay one step ahead in safeguarding their IT infrastructure. A vulnerability assessment tool plays a vital role in identifying potential weaknesses in your organization’s infrastructur...

CVE Research
Apple Releases Critical Updates to Patch 3 Zero-Day Vulnerabilities Under Active Attack
Apple has swiftly issued crucial security updates in response to the exploitation of three fresh Zero-Day Vulnerabilities. The vulnerabilities are being used in targeted attacks against iPhone and Mac users. This brings the total count of Zero-Day Vulnerabilities resolved by Apple this year to 16.

CVE Research
Microsoft September 2023 Patch Tuesday Fixes 59 Vulnerabilities Including 2 Zero-Day Exploits!
Microsoft has released September 2023 Patch Tuesday security updates, which fixes 59 vulnerabilities. Five are classified as critical, two zero-day(CVE-2023-36802 and CVE-2023-36761), and twenty-four vulnerabilities were related to remote code execution. Vulnerability management tools play a crucial...

CVE Research
Understanding Stake-holder Specific Vulnerability Categorization (SSVC) for Risk Prioritization
Risk Prioritization is not a new technology in the cyber security space. Cybersecurity professionals look for products that can integrate with existing vulnerability assessment reports to help prioritize risks, most often just software vulnerabilities. Primitive modus operandi such as Prioritization...

CVE Research
Understanding SanerNow Risk Prioritization Engine
With Advanced Vulnerability Management, SanerNow reveals a hundred thousand vulnerabilities in an account of devices. Risk Prioritization helps reduce the risk findings to a list of CVEs and CCEs that should be acted upon immediately for an organization. The aspects that assist Automated Decision Ma...

CVE Research
Understanding EPSS, a step towards Vulnerability Prioritization
There are too many vulnerabilities. Past research shows firms are able to fix 5%-20% of known vulnerabilities in a month. Moreover, a small subset of vulnerabilities (2%-7%) are seen to be exploited in the wild.

CVE Research
Top 5 Vulnerability Scanners for Enterprises in 2023
Enterprises are constantly challenged to protect their data and assets from malicious attacks requiring many efforts to identify and address vulnerabilities. According to research conducted in 2022, 70% of businesses worldwide fell victim to a Ransomware attack, and only 38% of global organizations ...

CVE Research
Microsoft August 2023 Patch Tuesday Fixes 87 Vulnerabilities, Including 2 Zero-Day Exploits!
On this August 2023 Patch Tuesday, Microsoft addresses security issues in 87 vulnerabilities. Two vulnerabilities are currently being exploited, and twenty-three vulnerabilities could lead to remote code execution. A Vulnerability Management System can prevent these attacks and keep your system safe...

