Is Ivanti the problem or a symptom of a systemic issue with network devices?CyberScoop·Apr 14, 13:57 UTC · Apr 14, 2025Exploit / PoC in the wild60
Five Eyes Warn of Ivanti Vulnerabilities ExploitationInfosecurity Magazine·Mar 1, 12:00 UTC · Mar 1, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-21887CVE-2024-2189360
Questions mount as Ivanti tackles another round of zeroCyberScoop·May 28, 21:39 UTC · May 28, 2025Ransomware in the wildCVE-2025-4427CVE-2025-442860
New Ivanti Vulnerability Observed as Widespread Security Concerns GrowInfosecurity Magazine·Feb 16, 15:45 UTC · Feb 16, 2024Vulnerability in the wildCVE-2024-22024CVE-2023-46805CVE-2024-21887+2 CVEs60
CISA orders federal agencies to disconnect Ivanti VPN instances by February 2Security Affairs·Feb 1, 19:46 UTC · Feb 1, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
Ivanti customers confront yet another actively exploited zeroCyberScoop·May 7, 21:50 UTC · May 7, 2026Exploit / PoC in the wildCVE-2026-6973CVE-2026-5787CVE-2026-5788+3 CVEs60
Critical Ivanti ZeroInfosecurity Magazine·Jan 9, 09:45 UTC · Jan 9, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2025-028360
Ivanti’s EPMM is under active attack, thanks to two critical zeroCyberScoop·Feb 4, 15:22 UTC · Feb 4, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-1340CVE-2025-442860
Ivanti Flaw CVE-2025-0282 Actively Exploited, Impacts Connect Secure and Policy SecureThe Hacker News·Jan 11, 06:31 UTC · Jan 11, 2025Vulnerability in the wildCVE-2025-0282CVE-2025-028360
Ivanti VPN customers targeted via unrecognized RCE vulnerability (CVE-2025-22457)Help Net Security·Apr 11, 10:14 UTC · Apr 11, 2025Vulnerability in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+2 CVEs60
China-backed espionage group hits Ivanti customers againCyberScoop·Apr 3, 22:58 UTC · Apr 3, 2025Threat actor in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+1 CVEs60
Ivanti Patches Critical Flaws in Connect Secure and Policy SecureThe Hacker News·Feb 18, 12:12 UTC · Feb 18, 2025Vulnerability in the wildCVE-2024-38657CVE-2025-22467CVE-2024-10644+7 CVEs60
Two Ivanti ZeroInfosecurity Magazine·Jan 11, 09:30 UTC · Jan 11, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2023-35078+1 CVEs60
Ivanti acquires RiskSense to help customers proactively combat cyber threats and ransomware attacksHelp Net Security·Aug 3, 00:00 UTC · Aug 3, 2021Ransomware in the wild60
U.S. CISA adds Ivanti Sentry flaw to its Known Exploited Vulnerabilities catalog and urges patching by June 14Security Affairs·Jun 14, 13:16 UTC · Jun 14, 2026Exploit / PoC in the wildCVE-2026-1052060
Fallout from latest Ivanti zeroCyberScoop·Feb 10, 00:03 UTC · Feb 10, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-134060
Ivanti Releases ZeroInfosecurity Magazine·Feb 1, 09:30 UTC · Feb 1, 2024Exploit / PoC in the wildCVE-2023-46805CVE-2024-21887CVE-2024-21888+1 CVEs60
Ivanti Vulnerability Exploit Could Expose UK NHS DataInfosecurity Magazine·May 28, 16:15 UTC · May 28, 2025Vulnerability in the wildCVE-2025-4427CVE-2025-442860
China-linked APT UNC5221 started exploiting Ivanti EPMM flaws shortly after their disclosureSecurity Affairs·May 26, 11:31 UTC · May 26, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-442860
CISA warns of RESURGE malware exploiting Ivanti flawSecurity Affairs·Mar 30, 23:13 UTC · Mar 30, 2025Malware in the wildCVE-2025-0282CVE-2025-028360
Ivanti fixes RCE vulnerability reported by NATO cybersecurity researchers (CVE-2023-41724)Help Net Security·Mar 20, 00:00 UTC · Mar 20, 2024Vulnerability in the wildCVE-2023-41724CVE-2023-4680860
Ivanti integrity checker tool needs latest update to work, Five Eyes alert warnsCyberScoop·Feb 29, 21:37 UTC · Feb 29, 2024Exploit / PoC in the wild60
Ivanti customers urged to patch vulnerabilities allegedly exploited by Chinese state hackersThe Record·Jan 10, 21:02 UTC · Jan 10, 2024Vulnerability in the wildCVE-2023-46805CVE-2024-2188760
Ivanti Sentry zero-day vulnerability exploited, patch ASAP! (CVE-2023-38035)Help Net Security·Aug 24, 12:34 UTC · Aug 24, 2023Exploit / PoC in the wildCVE-2023-3803560
CVE-2026-10520 Exploited: Ivanti Sentry Gateways Compromised Shortly After Patch ReleaseSecurity Affairs·Jun 12, 18:42 UTC · Jun 12, 2026Vulnerability in the wildCVE-2026-10520CVE-2026-1340CVE-2026-160360
Two Ivanti EPMM Zero-Day RCE Flaws Actively Exploited, Security Updates ReleasedThe Hacker News·Apr 9, 04:57 UTC · Apr 9, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-134060
Ivanti provides temporary patches for actively exploited EPMM zero-day (CVE-2026-1281)Help Net Security·Feb 2, 10:44 UTC · Feb 2, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-134060
Ivanti Patches EPMM Vulnerabilities Exploited for Remote Code Execution in Limited AttacksThe Hacker News·May 21, 06:53 UTC · May 21, 2025Vulnerability in the wildCVE-2025-4427CVE-2025-4428CVE-2025-2246260
Ivanti EPMM vulnerabilities exploited in the wild (CVE-2025-4427, CVE-2025-4428)Help Net Security·May 16, 13:18 UTC · May 16, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-4428CVE-2025-22462+1 CVEs60
Chinese spies targeting new Ivanti vulnerability, Mandiant saysThe Record·Jan 9, 20:38 UTC · Jan 9, 2025Vulnerability in the wildCVE-2025-0282CVE-2023-46805CVE-2024-21887160
Ivanti Issues Critical Security Updates for CSA and Connect Secure VulnerabilitiesThe Hacker News·Dec 11, 09:03 UTC · Dec 11, 2024Vulnerability in the wildCVE-2024-11639CVE-2024-11772CVE-2024-11773+3 CVEs60
Critical Ivanti Flaw Actively Exploited to Deploy TRAILBLAZE and BRUSHFIRE MalwareThe Hacker News·Apr 7, 06:39 UTC · Apr 7, 2025Malware in the wildCVE-2025-22457CVE-2024-38657CVE-2025-22467+2 CVEs60
CISA warns of latest Ivanti firewall bug being exploited by suspected Chinese hackersThe Record·Apr 4, 21:26 UTC · Apr 4, 2025Advisory in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+1 CVEs60
Chinese State Hackers Exploiting Newly Disclosed Ivanti FlawInfosecurity Magazine·Apr 4, 11:04 UTC · Apr 4, 2025Exploit / PoC in the wildCVE-2025-2245760
Three new Ivanti CSA zeroSecurity Affairs·Oct 8, 21:26 UTC · Oct 8, 2024Exploit / PoC in the wildCVE-2024-9379CVE-2024-9380CVE-2024-9381+2 CVEs60
Ivanti fixes critical vulnerabilities in Endpoint Management (CVE-2024-29847)Help Net Security·Sep 16, 14:44 UTC · Sep 16, 2024Vulnerability in the wildCVE-2024-29847CVE-2024-819060
Ivanti publishes urgent warning about new vulnerabilityThe Record·Feb 8, 22:05 UTC · Feb 8, 2024Vulnerability in the wildCVE-2024-2202460
Ivanti fixed a maximum severity vulnerability in its CSA solutionSecurity Affairs·Dec 11, 14:50 UTC · Dec 11, 2024Vulnerability in the wildCVE-2024-11639CVE-2024-11772CVE-2024-11773+4 CVEs60
Zero-Day Alert: Three Critical Ivanti CSA Vulnerabilities Actively ExploitedThe Hacker News·Oct 11, 04:51 UTC · Oct 11, 2024Exploit / PoC in the wildCVE-2024-9379CVE-2024-9380CVE-2024-9381+3 CVEs60
Ivanti: Three CSA ZeroInfosecurity Magazine·Oct 9, 10:15 UTC · Oct 9, 2024Exploit / PoC in the wildCVE-2024-9379CVE-2024-9380CVE-2024-9381+2 CVEs60