Two zero-day bugs in Ivanti Connect Secure actively exploitedSecurity Affairs·Jan 11, 15:03 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760
Researchers Identify Multiple China Hacker Groups Exploiting Ivanti Security FlawsThe Hacker News·Apr 6, 09:12 UTC · Apr 6, 2024Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-2189360
Five Eyes alliance warns of attacks exploiting known Ivanti Gateway flawsSecurity Affairs·Mar 1, 14:01 UTC · Mar 1, 2024Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-21893+2 CVEs60
Experts warn of mass exploitation of Ivanti Connect Secure VPN flawsSecurity Affairs·Jan 16, 10:40 UTC · Jan 16, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760
CISA adds Ivanti and Microsoft SharePoint bugs to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 11, 15:33 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2024-21887CVE-2023-46805CVE-2023-2935760
CISA orders federal agencies to disconnect Ivanti VPN instances by February 2Security Affairs·Feb 1, 19:46 UTC · Feb 1, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
Two Ivanti ZeroInfosecurity Magazine·Jan 11, 09:30 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2023-35078+1 CVEs60
CISA Reports PRC Hackers Using BRICKSTORM for LongThe Hacker News·Dec 5, 09:15 UTC · Dec 5, 2025Exploit / PoCCVE-2023-46805CVE-2024-21887CVE-2024-38812+3 CVEs160
Ivanti Zero-Days Exploited By Multiple Actors GloballyInfosecurity Magazine·Jan 16, 10:15 UTC · Jan 16, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760
Chinese Hackers Exploit Zero-Day Flaws in Ivanti Connect Secure and Policy SecureThe Hacker News·Jan 11, 05:29 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760
NSA, NCSC, and allies detailed TTPs associated with Chinese APT actors targeting critical infrastructure OrgsSecurity Affairs·Aug 28, 10:48 UTC · Aug 28, 2025Exploit / PoCCVE-2024-21887CVE-2023-46805CVE-2024-3400+3 CVEs160
Google Reports 75 Zero-Days Exploited in 2024 — 44% Targeted Enterprise Security ProductsThe Hacker News·Apr 30, 03:22 UTC · Apr 30, 2025Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-53104+10 CVEs160
Ivanti fixed for 4 new issues in Connect Secure and Policy SecureSecurity Affairs·Apr 4, 08:10 UTC · Apr 4, 2024Exploit / PoCCVE-2024-21894CVE-2024-22052CVE-2024-22053+5 CVEs60
Magnet Goblin Exploits 1Infosecurity Magazine·Mar 11, 17:00 UTC · Mar 11, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2023-2188760
Ivanti Pulse Secure Found Using 11-YearThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21893+1 CVEs60
Ivanti warns of a new auth bypass flaw in its Connect Secure, Policy Secure, and ZTA gateway devicesSecurity Affairs·Feb 9, 08:17 UTC · Feb 9, 2024Exploit / PoC in the wildCVE-2024-22024CVE-2023-46805CVE-2024-21887+2 CVEs60
Recent SSRF Flaw in Ivanti VPN Products Undergoes Mass ExploitationThe Hacker News·Feb 6, 14:36 UTC · Feb 6, 2024Exploit / PoC in the wildCVE-2024-21893CVE-2024-21887CVE-2023-36661+1 CVEs60
Latest Ivanti Zero Day Exploited By Scores of IPsInfosecurity Magazine·Feb 6, 11:00 UTC · Feb 6, 2024Exploit / PoC in the wildCVE-2024-21893CVE-2023-46805CVE-2024-21887+2 CVEs60
Ivanti Releases ZeroInfosecurity Magazine·Feb 1, 09:30 UTC · Feb 1, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
Alert: Ivanti Discloses 2 New ZeroThe Hacker News·Feb 1, 03:20 UTC · Feb 1, 2024Exploit / PoCCVE-2024-21888CVE-2024-21893CVE-2023-46805+1 CVEs160
Ivanti warns of a new actively exploited zeroSecurity Affairs·Jan 31, 14:37 UTC · Jan 31, 2024Exploit / PoC in the wildCVE-2024-21888CVE-2024-21893CVE-2023-46805+1 CVEs60
Rust Payloads Exploiting Ivanti 0Infosecurity Magazine·Jan 30, 15:00 UTC · Jan 30, 2024Exploit / PoCCVE-2024-21887CVE-2023-4680560
CISA Issues Emergency Directive to Federal Agencies on Ivanti ZeroThe Hacker News·Jan 25, 04:22 UTC · Jan 25, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760
CISA Emergency Directive Orders Action on Ivanti ZeroInfosecurity Magazine·Jan 22, 10:15 UTC · Jan 22, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-2188760