logo

CISA emergency directive: Mitigate Ivanti zero-days immediately

ID: ab1c8b13-a389-5a81-9fe1-898b0ecf30e7

STIX ID: report--ab1c8b13-a389-5a81-9fe1-898b0ecf30e7

Feed Name: Bleeping Computer

Threat Score
90/100

Date Published: 2024-01-19

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

**Executive summary:** CISA issued ED 24-01 requiring immediate mitigation and reporting for two Ivanti Connect Secure / Policy Secure zero-days (CVE-2023-46805 and CVE-2024-21887) that are being widely exploited in the wild to deploy webshells/backdoors, steal credentials, move laterally, exfiltrate data, and install cryptominers and other custom malware; thousands of appliances have been exposed or compromised and multiple threat actors — including a suspected Chinese state-backed group — are implicated.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.