Five Eyes Agencies Warn of Active Exploitation of Ivanti Gateway Vulnerabilities
ID: 083a5f7e-4e33-5f68-b48b-5c37e32b1568
STIX ID: report--083a5f7e-4e33-5f68-b48b-5c37e32b1568
Feed Name: The Hacker News
Five Eyes agencies warn that multiple high-severity vulnerabilities in Ivanti Connect Secure and Ivanti Policy Secure appliances are being actively exploited to deploy malware and potentially achieve rootkit-level persistence; vendors and researchers (Mandiant, Akamai) report large-scale probing and deployment (including an encrypted BUSHWALK sample placed in excluded ICT directories), while Ivanti has released patches and an updated Integrity Checker Tool but agencies recommend treating affected devices as high risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
