Learn Search

Search across all Learn content

SecPod Labs

Security Research

In-depth CVE write-ups, vulnerability analysis, and security intelligence from the SecPod Research team.

Ransomware Types That Target Businesses

CVE Research

Ransomware Types That Target Businesses

Although the ransomware types took a nosedive in terms of the victim count years ago, it’s still alive and kicking. By using a vulnerability management tool, we can remediate these. It used to home in on any computers indiscriminately, but at some point, the malicious actors realized they could sque...

Jun 07, 2020 • 8 min read

Critical Code Execution Vulnerabilities in Zoom Client Application

CVE Research

Critical Code Execution Vulnerabilities in Zoom Client Application

Two critical vulnerabilities were recently disclosed by Cisco Talos in the widely used video conferencing software Zoom. It can be exploited by a remote attacker who can hack into the host’s machine and can execute arbitrary code. Given the current scenario of the COVID-19 pandemic, several companie...

Jun 03, 2020 • 3 min read

Alert for Apple Users: Apple Patches a Zero-Day Unc0ver Jailbreak Vulnerability

CVE Research

Alert for Apple Users: Apple Patches a Zero-Day Unc0ver Jailbreak Vulnerability

The IT giant, Apple has quietly patched a zero-day vulnerability which was recently discovered by a team of cyber-security researchers and hackers in the iOS kernel. Apple has patched this vulnerability in all of its operating systems across various devices along with iOS. The researchers who discov...

Jun 03, 2020 • 3 min read

Critical Vulnerabilities in SAP Adaptive Server Enterprise (ASE)

CVE Research

Critical Vulnerabilities in SAP Adaptive Server Enterprise (ASE)

The SAP Adaptive Server Enterprise (ASE), previously known as Sybase SQL Server, is a high-performance relational database server that can be hosted on-premise or cloud structure that is used by over 30,000 organizations worldwide, including banking institutions, healthcare companies, security firms...

Jun 03, 2020 • 5 min read

Are Your Organization’s IT Assets ‘Really’ Under Control?

CVE Research

Are Your Organization’s IT Assets ‘Really’ Under Control?

Every organization has its own IT Assets and IT asset control can be done by the internal team by using a vulnerability management tool. They might range from desktops, laptops, mobile devices to switches, hubs, routers, the list does not stop here. As organizations expand their business, it leads t...

May 27, 2020 • 4 min read

Beware : NXNSAttack on DNS Servers Could Bring Down Major Sections of the Internet

CVE Research

Beware : NXNSAttack on DNS Servers Could Bring Down Major Sections of the Internet

A new vulnerability in the architecture of the global Domain Name System (DNS) was brought to light. By a team of Israeli researchers. The team also published a paper highlighting how this flaw could be leveraged with an attack. Dubbed as NXNSAttack to bring down target websites. A vulnerability man...

May 20, 2020 • 3 min read

6 Common Myths And Misbeliefs About Patching

CVE Research

6 Common Myths And Misbeliefs About Patching

Patching is one of the best security practices followed to fix software vulnerabilities. Studies show that much serious ransomware like WannaCry could have been easily prevented if software updates were patched on time. For cyber attackers, un-updated software is always a welcome sign to intrude the...

May 17, 2020 • 4 min read

Adobe Critical Security Updates May 2020

CVE Research

Adobe Critical Security Updates May 2020

Adobe had released security updates providing fixes for 16 critical vulnerabilities in Adobe Acrobat, Reader, and Adobe DNG Software Development Kit. A total of 36 security bugs were patched in this release. The critical vulnerabilities could allow the attackers to execute arbitrary code or bypass t...

May 13, 2020 • 3 min read

Cisco Releases Security Updates for Multiple Products

CVE Research

Cisco Releases Security Updates for Multiple Products

Cisco has rolled out May 2020 security patches for eleven different products using auto patching. Advisories released for Cisco Adaptive Security Appliance Software and Cisco Firepower Threat Defense Software are considered important. The most severe of these vulnerabilities could enable an attacker...

May 07, 2020 • 6 min read