logo

EU, Dutch government announce hacks following Ivanti zero-days

ID: c6808873-e12e-5ca0-b6f1-50e3b02f0cfe

STIX ID: report--c6808873-e12e-5ca0-b6f1-50e3b02f0cfe

Feed Name: The Record from Recorded Future News

Threat Score
85/100

Date Published: 2026-02-09

Date Updated: 2026-05-01

...
...

A wave of active cyberattacks is exploiting two critical Ivanti EPMM code-injection vulnerabilities (CVE-2026-1281 and CVE-2026-1340, CVSS 9.8) that allow device takeover without credentials; multiple national agencies (including Dutch authorities and the European Commission) reported unauthorized access to staff contact information, while CISA and other national cyber agencies confirmed exploitation in the wild and urged patching and log review.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.