logo

UK domain registry Nominet confirms breach via Ivanti zero-day

ID: 7a8b2054-db29-554b-8559-8f6b382c1058

STIX ID: report--7a8b2054-db29-554b-8559-8f6b382c1058

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2025-01-13

Date Updated: 2026-03-27

Author: Sergiu Gatlan

...
...

Nominet, the UK domain registry, confirmed a network breach via an Ivanti Connect Secure zero-day (CVE-2025-0282) exploited in the wild; Mandiant links the intrusions to a suspected China-linked group (UNC5337) deploying Spawn and other malware, Nominet has restricted VPN access and reported the incident while Ivanti released patches and guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.