Ivanti Gets Poor Marks for Cyber Incident Response
ID: 41b27bfa-780c-5a38-8110-c50b608e0d2f
STIX ID: report--41b27bfa-780c-5a38-8110-c50b608e0d2f
Feed Name: Dark Reading
Multiple critical zero-day vulnerabilities in Ivanti Connect Secure and Policy Secure VPN appliances were disclosed in 2024, with several exploited in the wild before patches were available; CISA ordered federal agencies to disconnect affected devices until mitigations were applied. The report highlights delayed patch releases, additional newly discovered flaws, evidence of active exploitation (including activity attributed to Chinese state-aligned actors and probing IPs), and criticism of Ivanti’s security practices and incident response—advising cautious treatment of Ivanti appliances by enterprise defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
