Get the latest tech news

CISA issues warning about another Ivanti flaw under active attack


The U.S. IT software giant confirmed this week that the vulnerability, fixed in May, is now being used to target a "limited number" of Ivanti customers.

Hackers are exploiting yet another vulnerability in one of Ivanti’s widely used enterprise products, the U.S. government’s cybersecurity agency CISA warned in a fresh alert this week. “These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise,” CISA said. Earlier this year, the company confirmed that hackers were mass-exploiting vulnerabilities in Connect Secure, its remote access VPN solution used by thousands of corporations and large organizations worldwide.

Get the Android app

Or read this on TechCrunch

Read more on:

Photo of Ivanti

Ivanti

Photo of active attack

active attack

Photo of CISA issues

CISA issues

Related news:

News photo

Ivanti patches exploited admin command execution flaw

News photo

Ivanti warns of another critical CSA flaw exploited in attacks

News photo

Ivanti warns high severity CSA flaw is now exploited in attacks