Ivanti EPMM vulnerabilities exploited in the wild (CVE-2025-4427, CVE-2025-4428)Help Net Security·May 16, 13:18 UTC · May 16, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-4428CVE-2025-22462+1 CVEs60
CISA warns of malware deployed through Ivanti EPMM flawsSecurity Affairs·Sep 20, 14:07 UTC · Sep 20, 2025Malware in the wildCVE-2025-4427CVE-2025-442860
Questions mount as Ivanti tackles another round of zeroCyberScoop·May 28, 21:39 UTC · May 28, 2025Ransomware in the wildCVE-2025-4427CVE-2025-442860
Ivanti Patches EPMM Vulnerabilities Exploited for Remote Code Execution in Limited AttacksThe Hacker News·May 21, 06:53 UTC · May 21, 2025Vulnerability in the wildCVE-2025-4427CVE-2025-4428CVE-2025-2246260
U.S. CISA adds Ivanti EPMM, MDaemon Email Server, Srimax Output Messenger, Zimbra Collaboration, and ZKTeco BioTime flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 21, 10:14 UTC · May 21, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-4428CVE-2024-11182+3 CVEs60
CISA Warns of Two Malware Strains Exploiting Ivanti EPMM CVE-2025-4427 and CVE-2025The Hacker News·Sep 19, 06:35 UTC · Sep 19, 2025VulnerabilityCVE-2025-4427CVE-2025-442860
Ivanti Vulnerability Exploit Could Expose UK NHS DataInfosecurity Magazine·May 28, 16:15 UTC · May 28, 2025Vulnerability in the wildCVE-2025-4427CVE-2025-442860
China-linked APT UNC5221 started exploiting Ivanti EPMM flaws shortly after their disclosureSecurity Affairs·May 26, 11:31 UTC · May 26, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-442860
Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network AttacksThe Hacker News·May 22, 12:07 UTC · May 22, 2025Exploit / PoCCVE-2025-4427CVE-2025-4428CVE-2025-3132460
Ivanti fixed two EPMM flaws exploited in limited attacksSecurity Affairs·May 21, 09:43 UTC · May 21, 2025VulnerabilityCVE-2025-4427CVE-2025-442860
OT teams are losing the time advantage against industrial threat actorsHelp Net Security·Feb 17, 00:00 UTC · Feb 17, 2026Threat actorCVE-2025-4427CVE-2025-442860
Ivanti’s EPMM is under active attack, thanks to two critical zeroCyberScoop·Feb 4, 15:22 UTC · Feb 4, 2026Exploit / PoC in the wildCVE-2026-1281CVE-2026-1340CVE-2025-442860
New ForumTroll Phishing Attacks Target Russian Scholars Using Fake eLibrary EmailsThe Hacker News·Dec 17, 14:54 UTC · Dec 17, 2025Phishing & fraudCVE-2025-2783CVE-2025-53770CVE-2025-4427+3 CVEs60
How a noisy ransomware intrusion exposed a long-term espionage footholdHelp Net Security·Dec 2, 00:00 UTC · Dec 2, 2025RansomwareCVE-2025-53770CVE-2024-21887CVE-2025-4427+2 CVEs60
H1 2025 Malware and Vulnerability TrendsRecorded Future·Nov 13, 00:00 UTC · Nov 13, 2025Vulnerability in the wild60
Hackers Exploit SharePoint Zero-Day Since July 7 to Steal Keys, Maintain Persistent AccessThe Hacker News·Jul 23, 06:05 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-4428CVE-2025-53770+3 CVEs60
Security Affairs newsletter Round 526 by Pierluigi PaganiniSecurity Affairs·Jun 8, 11:24 UTC · Jun 8, 2025Data breachCVE-2025-5054CVE-2025-4598CVE-2025-442860
⚡ Weekly Recap: APT Campaigns, Browser Hijacks, AI Malware, Cloud Breaches and Critical CVEsThe Hacker News·May 26, 13:00 UTC · May 26, 2025MalwareCVE-2025-4427CVE-2025-4428CVE-2025-34025+7 CVEs60
Chinese cyber spies are using Ivanti EPMM flaws to breach EU, US organizationsHelp Net Security·May 23, 00:00 UTC · May 23, 2025Exploit / PoC in the wildCVE-2025-4427CVE-2025-442860
⚡ Weekly Recap: Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and MoreThe Hacker News·May 19, 14:35 UTC · May 19, 2025Exploit / PoC in the wildCVE-2025-30397CVE-2025-30400CVE-2025-32701+22 CVEs60
Week in review: Microsoft patches 5 actively exploited 0-days, recently fixed Chrome vulnerability exploitedHelp Net Security·May 18, 00:00 UTC · May 18, 2025Vulnerability in the wildCVE-2025-4664CVE-2025-32756CVE-2025-4427+2 CVEs60
New Fortinet and Ivanti Zero Days Exploited in the WildInfosecurity Magazine·May 14, 13:00 UTC · May 14, 2025Exploit / PoC in the wildCVE-2025-32756CVE-2025-4427CVE-2025-442860