logo

CISA: Hackers still exploiting older Ivanti bugs to breach networks

ID: 706da01b-e2b9-5125-b01f-57afe56e7ed5

STIX ID: report--706da01b-e2b9-5125-b01f-57afe56e7ed5

Feed Name: Bleeping Computer

Threat Score
90/100

Date Published: 2025-01-23

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

CISA and the FBI warn that multiple Ivanti Cloud Service Appliance vulnerabilities—some previously patched—are being actively exploited in chained attacks to gain initial access, execute remote code, steal credentials, and install webshells; agencies urge immediate patching, hunting for IOCs, log/ artifact analysis, and assume stored credentials may be compromised.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.