Get the latest tech news

US gives federal agencies 48 hours to disconnect flawed Ivanti VPN tech


In an rare move, CISA ordered federal agencies to urgently disconnect vulnerable Ivanti VPN software following in-the-wild exploitation.

Though federal agencies are typically given weeks to patch against vulnerabilities, CISA has ordered the disconnection of Ivanti VPN appliances within 48 hours. Steven Adair, founder of cybersecurity company Volexity, told TechCrunch on Thursday that at least 2,200 Ivanti devices have been compromised to date. “CISA has effectively directed federal agencies on a method for deploying what would be considered a completely fresh and patched install of [Ivanti Connect Secure] VPN devices as a requirement to bring them back online,” Adari told TechCrunch.

Get the Android app

Or read this on TechCrunch

Read more on:

Photo of hours

hours

Photo of federal agencies

federal agencies

Related news:

News photo

Washington Area Sees AI Job Surge With Federal Agencies Embracing New Tech

News photo

Palworld has clocked up 2m players in just 24 hours

News photo

Japan’s SLIM lunar lander made it to the moon, but it’ll likely die within hours