
"Urgent: CISA Mandates Immediate Closure of Exploited Ivanti VPN Backdoor"
Ivanti warns administrators to refrain from pushing new device configurations to their appliances after applying mitigations for two zero-day vulnerabilities, as doing so could leave them vulnerable to ongoing attacks. The company's Connect Secure and Policy Secure appliances have been targeted in widespread attacks exploiting authentication bypass and command injection bugs, with thousands of exposed appliances and hundreds already compromised. Threat actors, including a suspected Chinese state-backed group, have backdoored appliances, deployed cryptocurrency miners and malware, and stolen data from various organizations worldwide.


