Ivanti Flaw CVE-2025-0282 Actively Exploited, Impacts Connect Secure and Policy SecureThe Hacker News·Jan 11, 06:31 UTC · Jan 11, 2025Vulnerability in the wildCVE-2025-0282CVE-2025-028360
Ivanti Connect Secure zero-day exploited by attackers (CVE-2025-0282)Help Net Security·Jan 8, 00:00 UTC · Jan 8, 2025Exploit / PoCCVE-2025-0282CVE-2025-028360
Ivanti Connect Secure zero-day exploited since mid-December (CVE-2025-0282)Help Net Security·Jan 9, 00:00 UTC · Jan 9, 2025Exploit / PoCCVE-2025-028260
CISA warns of RESURGE malware exploiting Ivanti flawSecurity Affairs·Mar 30, 23:13 UTC · Mar 30, 2025Malware in the wildCVE-2025-0282CVE-2025-028360
UK domain registry Nominet breached via Ivanti zero-dayHelp Net Security·Jan 13, 00:00 UTC · Jan 13, 2025Data breachCVE-2025-028260
Ivanti Flaws Exploited to Drop MDifyLoader and Launch InThe Hacker News·Jul 23, 10:41 UTC · Jul 23, 2025MalwareCVE-2025-0282CVE-2025-2245760
RESURGE Malware Exploits Ivanti Flaw with Rootkit and Web Shell FeaturesThe Hacker News·Mar 31, 09:11 UTC · Mar 31, 2025MalwareCVE-2025-028260
Chinese spies targeting new Ivanti vulnerability, Mandiant saysThe Record·Jan 9, 20:38 UTC · Jan 9, 2025Vulnerability in the wildCVE-2025-0282CVE-2023-46805CVE-2024-21887160
Critical Ivanti ZeroInfosecurity Magazine·Jan 9, 09:45 UTC · Jan 9, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2025-028360
DslogdRAT Malware Deployed via Ivanti ICS Zero-Day CVE-2025The Hacker News·Apr 25, 08:43 UTC · Apr 25, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2025-2245760
CISA reveals new malware variant used on compromised Ivanti Connect Secure devicesHelp Net Security·Apr 2, 08:43 UTC · Apr 2, 2025Malware in the wildCVE-2025-028260
New Malware Variant RESURGE Exploits Ivanti VulnerabilityInfosecurity Magazine·Mar 31, 16:45 UTC · Mar 31, 2025Vulnerability in the wildCVE-2025-028260
New zeroCyberScoop·Jan 9, 21:51 UTC · Jan 9, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2025-028360
U.S. CISA adds Ivanti Connect Secure, Policy Secure, and ZTA Gateways flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jan 9, 11:53 UTC · Jan 9, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2025-028360
Ivanti warns hackers are exploiting new vulnerabilityThe Record·Jan 8, 20:41 UTC · Jan 8, 2025Vulnerability in the wildCVE-2025-0282CVE-2025-028360
H1 2025 Malware and Vulnerability TrendsRecorded Future·Nov 13, 00:00 UTC · Nov 13, 2025Vulnerability in the wild60
JPCERT warns of DslogdRAT malware deployed in Ivanti Connect SecureSecurity Affairs·Apr 25, 17:56 UTC · Apr 25, 2025Malware in the wildCVE-2025-028260
Latest Ivanti bug, paired with malware, earns an alert from CISAThe Record·Apr 2, 18:00 UTC · Apr 2, 2025MalwareCVE-2025-028260
Week in review: Exploited Ivanti Connect Secure zero-day, Patch Tuesday forecastHelp Net Security·Jan 12, 00:00 UTC · Jan 12, 2025Exploit / PoC in the wildCVE-2025-0282CVE-2024-41713CVE-2024-55550+1 CVEs60
LATAM Infrastructure Hit by Fortinet and Ivanti ExploitsInfosecurity Magazine·Jun 18, 11:30 UTC · Jun 18, 2026Data breachCVE-2022-42475CVE-2024-21762CVE-2023-46805+2 CVEs160
Google says 90 zero-days exploited in 2025 as commercial vendor activity growsThe Record·Mar 5, 15:01 UTC · Mar 5, 2026Ransomware in the wildCVE-2025-21590CVE-2025-0282CVE-2025-61882+2 CVEs60
Chinese Hackers Target Linux Systems Using SNOWLIGHT Malware and VShell ToolThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2025MalwareCVE-2024-8963CVE-2024-9380CVE-2024-8190+2 CVEs160
Ivanti VPN customers targeted via unrecognized RCE vulnerability (CVE-2025-22457)Help Net Security·Apr 11, 10:14 UTC · Apr 11, 2025Vulnerability in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+2 CVEs60
Week in review: Probing activity on Palo Alto Networks GlobalProtect portals, Patch Tuesday forecastHelp Net Security·Apr 6, 00:00 UTC · Apr 6, 2025Vulnerability in the wildCVE-2025-22457CVE-2024-20439CVE-2025-2825+1 CVEs60
CISA warns of latest Ivanti firewall bug being exploited by suspected Chinese hackersThe Record·Apr 4, 21:26 UTC · Apr 4, 2025Advisory in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+1 CVEs60
China-backed espionage group hits Ivanti customers againCyberScoop·Apr 3, 22:58 UTC · Apr 3, 2025Threat actor in the wildCVE-2025-22457CVE-2025-0282CVE-2023-46805+1 CVEs60
CISA Urges All Organizations to Patch Exploited Critical Ivanti FlawsInfosecurity Magazine·Mar 11, 12:00 UTC · Mar 11, 2025Vulnerability in the wildCVE-2024-13159CVE-2024-13160CVE-2024-13161+7 CVEs60
China-Linked Silk Typhoon Expands Cyber Attacks to IT Supply Chains for Initial AccessThe Hacker News·Mar 7, 04:04 UTC · Mar 7, 2025Data breach in the wildCVE-2025-0282CVE-2024-3400CVE-2023-3519+5 CVEs60
Silk Typhoon shifted to specifically targeting IT management companiesCyberScoop·Mar 6, 14:54 UTC · Mar 6, 2025Exploit / PoC in the wildCVE-2025-028260
China-linked APT Silk Typhoon targets IT Supply ChainSecurity Affairs·Mar 5, 21:02 UTC · Mar 5, 2025Exploit / PoCCVE-2025-028260
Silk Typhoon Shifts Tactics to Exploit Common IT SolutionsInfosecurity Magazine·Mar 5, 16:30 UTC · Mar 5, 2025Exploit / PoC in the wildCVE-2025-028260
Ivanti Patches Critical Flaws in Connect Secure and Policy SecureThe Hacker News·Feb 18, 12:12 UTC · Feb 18, 2025Vulnerability in the wildCVE-2024-38657CVE-2025-22467CVE-2024-10644+7 CVEs60
Week in review: AWS S3 data encrypted without ransomware, data of 15k Fortinet firewalls leakedHelp Net Security·Jan 19, 00:00 UTC · Jan 19, 2025Ransomware in the wildCVE-2024-55591CVE-2025-0282CVE-2024-734460
⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [13 January]The Hacker News·Jan 15, 00:00 UTC · Jan 15, 2025Ransomware in the wildCVE-2025-0282CVE-2024-52875CVE-2024-8474+15 CVEs60
UK Registry Nominet Breached Via Ivanti ZeroInfosecurity Magazine·Jan 14, 09:45 UTC · Jan 14, 2025Data breachCVE-2025-028260
Security Affairs newsletter Round 506 by Pierluigi PaganiniSecurity Affairs·Jan 12, 18:03 UTC · Jan 12, 2025Data breach in the wildCVE-2024-43405CVE-2025-028260
Ongoing attacks on Ivanti VPNs install a ton of sneaky, wellArs Technica · Security·Jan 9, 22:17 UTC · Jan 9, 2025Exploit / PoC in the wildCVE-2025-028260