logo

Threat Actor May Have Accessed Sensitive Info on CISA Chemical App

ID: f1445876-6816-53ff-98b5-71616bec8f61

STIX ID: report--f1445876-6816-53ff-98b5-71616bec8f61

Feed Name: Dark Reading

Threat Score
70/100

Date Published: 2024-06-25

Date Updated: 2026-04-21

Author: Jai Vijayan, Contributing Writer

...
...

CISA notified stakeholders that an unknown threat actor exploited chained vulnerabilities in Ivanti Connect Secure to deploy a web shell on an Ivanti appliance and potentially access CSAT data (chemical inventories, security vulnerability assessments, site security plans, and personnel information) during a two-day window in January 2024; CISA reports no confirmed data exfiltration but recommends credential rotation and remediation and notes public exploits exist for the referenced Ivanti CVEs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.