State-Sponsored Hackers Exploit New Zero-Day Vulnerabilities in Ivanti VPN

TL;DR Summary
State-backed hackers are exploiting two critical vulnerabilities in Ivanti's Connect Secure VPN software, allowing for unauthenticated remote code execution and potentially compromising corporate networks. While Ivanti is working on patches to be released by mid-February, security researchers have observed scanning activity targeting vulnerable appliances. Organizations are urged to prioritize mitigation guidance, but applying these measures will not resolve past compromises.
- State-backed hackers are exploiting new Ivanti VPN zero-days — but no patches yet TechCrunch
- Actively exploited 0-days in Ivanti VPN are letting hackers backdoor networks Ars Technica
- Cutting Edge: Suspected APT Targets Ivanti Connect Secure VPN in New Zero-Day Exploitation Mandiant
- State-Sponsored Hackers Exploit Zero-Day Flaws in Ivanti VPN PCMag
- Infoseccers think attackers backed by China are behind Ivanti zero-day exploits The Register
Reading Insights
Total Reads
0
Unique Readers
11
Time Saved
2 min
vs 3 min read
Condensed
86%
418 → 60 words
Want the full story? Read the original article
Read on TechCrunch